Restrict allowed file types on the portal
Prevent unsafe uploads by allowing only specific file types on the candidate and client portals. MSR-1011 | October 2025
Who is this feature relevant for?
Customers using our candidate and client portals who want to improve their security. This also applies to customers using our APIs to upload documents into MSR.
The benefits at a glance
-
Prevent unwanted or risky files from entering MSR.
-
Define which file extensions are allowed, such as pdf, docx, jpg, and more.
-
Applies to all uploads on the candidate and client portals, such as CVs, cover letters, and documents for vacancies or checklists.
-
Also applies to our API endpoints for document creation and job applications.
Feature explanation
A new setting in Custom Settings → Portal Settings allows you to specify which file extensions are permitted.
-
If the setting is left empty, the behavior remains unchanged, and all file extensions are allowed.
-
If a user uploads a file with a non-permitted extension, the upload will be blocked.
Set-up
In Custom Settings → Portal Settings:
-
Enter the field Allowed file extensions (e.g., pdf,txt,rtf,doc,docx,xls,xlsx,png,jpg,jpeg).
-
Note: enter the list comma-separated, without spaces.
-
If the field is left empty, all file extensions remain allowed.
Feature Implementation Time
Very simple implementation: less than 15 minutes
🔗 Here you can find all features from the October Release 2025.