reapit / foundations

Foundations platform mono repo
57 stars 21 forks source link

Document - Permissions #10997

Open roscoe2001 opened 5 months ago

roscoe2001 commented 5 months ago

This request has come from our risk and audit department. When we allow an App to have permissions to read/write documents that then allows them access to read/write ALL documents.

This is could do with being more targeted e.g. we may have a supplier who provides an App to do Routine Visits so we would like to grant them permission to the Routine Visits document (and maybe certain other documents) but not some of the more sensitive documents.

In an ideal world it would work like the referrals permissions where you stipulate which referral types you are granting permissions for (so you would have a choice of which documents you want to grant permission to read/write)

Hopefully that makes sense.

Specification

github-actions[bot] commented 5 months ago

Thank you for raising a feature request. Feature requests will be prioritised in accordance with our roadmap, customer and developer priorities. This request will be reviewed in our weekly refinement sessions and assigned to a specific project board or column, depending on the nature of the request and the development work required. For more information on our processes, please click here

github-actions[bot] commented 4 months ago

As this issue relates to AgencyCloud, we are unable to process this through the Platform in accordance with our Developer Processes. Issues relating to AgencyCloud should not be submitted via the Foundations GitHub repo but should be raised via the Reapit Service Desk by a Reapit Customer. Please ask a Reapit Customer to raise this issue via the Reapit Service Desk. For more information on our processes, please click here

roscoe2001 commented 4 months ago

Would you be able to explain why this is a Agency Cloud issue please. I'm requesting a change to one of the Foundation API endpoints (the documents) Thanks

github-actions[bot] commented 4 months ago

This issue has been updated and moved to our ‘Near Term’ column (typically completed within 0 - 4 months). We have assessed the effort required and outlined a technical specification - please take the time to review this detail. When we're ready to schedule the issue, it will be assigned to the relevant board where you can continue to track its progress to completion. For more information on our processes, please click here

HollyJoyPhillips commented 1 month ago

Internal Reference: PBI-5740