<< Back to Quick Tips & Tricks

Learning from a Security Scare: SFTP and GDPR

Published {$created} by Viggo


A while back, we ran into a tricky situation. A customer, migrating their surveillance footage from a self-hosted FTP server, was experiencing intermittent transfer failures. The initial setup involved regular FTP – a quick and easy solution at first glance. However, the network environment they were operating in had some unexpected firewalls and proxies that kept disrupting the connection.

The easy fix seemed to be adjusting FTP settings, but we realized this wasn't truly addressing the root cause. We were essentially patching a fundamentally insecure protocol with a temporary workaround. It was a good reminder that we needed to champion secure practices. This also highlighted our commitment to cloud sftp hosting with GDPR compliance, which we’re built on.

The Shift to SFTP

The solution was clear: migrate them to SFTP. This wasn’t just about solving the immediate connectivity issues; it was about establishing a secure and reliable foundation for their data. SFTP, utilizing the SSH protocol, provides inherent security and better handles network complexities. You can learn more about the differences between SFTP and FTP in our FTP 101: SFTP vs FTP vs FTPS tutorial.

The process involved setting up an SFTP account within their ftpGrid instance and updating their backup scripts. The transition was surprisingly smooth, thanks to the robust API access we offer, allowing for automated scripting in various programming languages (take a look at our Quick Storage API Series: SFTP/FTP). Using key-based authentication – following best practices outlined in our Advanced SSH Key Authentication for SFTP guide – ensured the process was secure and efficient.

A Lesson Learned (and a Reinforced Commitment)

This experience solidified our commitment to prioritizing secure protocols. While FTP might be simple, the risks associated with unencrypted transfers are too significant to ignore. It underscored the importance of promoting best practices, especially when dealing with sensitive data like surveillance footage.

Our goal is to provide a reliable and secure platform – and that means advocating for the right tools. If you’re looking for cloud sftp hosting with GDPR compliance, check out our FTP/SFTP Cloud Storage Quick Start guide and our Managed FTP Hosting Guide for a deeper dive.



Keywords: cloud sftp hosting with gdpr compliance
Free signup
© 2025 ftpGrid

ftpGrid ApS
Branebjerg 24
DK-5471
Gamby
Denmark

Looking for an all-in-one time tracking, timesheet, and invoicing solution - visit our Devanux sister company Nureti at https://nureti.com.

Preview Devanux’s upcoming project Pictoguide – a visual support tool designed to bring structure and clarity to people with ASD.