Privacy Policy

Last updated 22 August 2026

The short version

Your files move from your Dynamics 365 environment into your own Azure Blob Storage account. They never sit on Blobward servers. We keep a record of which files were moved and where, so the migration can be resumed, verified and reversed — but not the file contents themselves.

The free scan

When you connect an environment, your browser gets a Microsoft sign-in token scoped to that environment. The scan asks Dataverse for totals — how many attachments there are and how much space they use, grouped by record type. It does not read file contents, and it does not read the records the files hang off.

The scan result is kept so we can price the migration and compare it against reality if you later buy. It contains sizes and counts, not file names or contents.

The migration

This is the part where we handle real file contents, so it is worth being exact.

  • We read your files. Each attachment is read out of Dataverse in 4 MB pieces.
  • Those pieces pass straight through to your storage. They are held briefly in memory while being forwarded and are never written to a Blobward disk, database, log or backup.
  • We check the copy before touching the original. The stored file is read back from your container and its fingerprint compared to the source. If they do not match, the copy is deleted and your original is left exactly as it was.
  • We then change the note in Dynamics. The attachment is replaced with a small shortcut file pointing at the moved file, and a record is created describing where it went. The note itself — its text, its date, its author, its link to the parent record — is not deleted or altered beyond this.

What we store, and for how long

WhatWhy
File names, sizes, types and fingerprintsSo a migration can be resumed after an interruption, verified, and reversed.
Your environment URL and organisation nameTo know which environment a job belongs to.
Your email address and order detailsTo send your receipt and completion report.
Not file contentsWe have no copy of your files. They are in your account.
Not your Microsoft password or credentialsSign-in is handled by Microsoft. We receive a limited-time token, never a password.

Migration records are kept for 12 months so you can reverse a migration or investigate a file, then deleted. You can ask us to delete them sooner — see below.

Access to your storage

To write files into your container, you grant the Blobward application the Storage Blob Data Contributor role on that one container. We never ask for, and cannot accept, a storage account key. You can remove that role at any moment and our access ends immediately, without you having to change anything else.

Who else sees your data

Payments are handled by Stripe, who receive your billing details directly — we never see your card number. Email is sent via Brevo. Our servers are hosted in Germany. We do not sell data, and we do not use your data to train anything.

Your rights

Under GDPR you can ask for a copy of what we hold about you, ask us to correct it, or ask us to delete it. Email privacy@blobward.com and we will respond within 30 days. Deleting your migration records does not affect your files — those are in your own storage account and stay there.

Contact

hello@blobward.com