Record Ownership Flashcards
Full Access
View, edit, transfer ownership, change record type, delete, share
System Permissions are controlled by:
Profiles, permission sets, permission group sets
Types of Admin:
System, delegated, custom
(admins get access to all records by default)
Record Permission/Restriction Hierarchy
System Permission -> Record Ownership -> Organisation Wide Defaults -> Roles -> Sharing Rules (incl. sharing rules, teams, and manual sharing)
Object Permissions
Read, Create, Edit, Delete, View All, Modify All, View Setup, Edit Setup, Delete Setup
Record Owner
Given the appropriate profile/permission set permissions, the User owning a record can view, edit, share, transfer, and delete records that they own.
Permissions may include Modify All and View All on any Object.
Queue
Queues can act as an “Owner” of records.
Queue members are comprised of any combination of public groups,
roles, roles + subordinates, and users.
A list view is automatically created when a queue is created.
Queue can be used with leads, cases, tasks, or custom objects.
Access to Records that I own:
VESTD (ownership privileges):
- View, Edit, Share, Transfer, Delete + Change a record type
- Depends on CRED (if ‘D’ removed from CRED, ‘D’ removed from VESTD as well)
Access to Records that I don’t own:
Through:
- Organisation Wide Defaults
- Role Hierarchy
- Sharing Rules
- Manual Sharing (manual + team)
Organisation Wide Default Access Levels:
Private, Public Read Only, Public Read / Write, Public Read / Write / Transfer (Leads and Cases)
OWD Private Access:
Search for/report on owned records only.
OWD Public Read Only Access:
Search for/report on any records
+ Add related records.
OWD Public Read/Write Access:
Search for/report on any records
+ Add related records
+ Edit details of records
OWD Public Read/Write/Transfer Access:
Search for/report on any records
+ Add related records
+ Edit details of records
+ Change ownership of a record
- Used when wanting to transfer the lead to somebody more experienced
Organisation Wide Defaults are also used to:
Implement your Data Access Model
- except setting default level of access users have to records they don’t own
& imposing access restrictions