跳至主要內容
Adaptive Planning
上次更新時間 :2023-06-23
Concept: Sensitive Data

Concept: Sensitive Data

Use any combination of these methods to protect sensitive data. Examples of sensitive data include salary details, social security numbers, or employee addresses.
  • Salary detail permissions and settings.
  • Access rules
  • User-assigned sheets
Combine methods to get the best protection. Always explore the results to ensure they’re what you expect. If you need help, contact us.
The example for this article is a personnel modeled sheet that with data about employees. It includes sensitive information such as social security numbers and addresses. It also calculates sensitive account data, such as the salary account. The salary account feeds general ledger accounts in sheets and reports as an expense.
  • The HR manager needs to know everything on the sheet.
  • The VP of Sales needs to know the total expense of salaries for the sales department. The VP doesn’t need to know the salaries of each employee.
  • The inventory manager never needs to see salary information.

User-Assigned Sheets

wd-accent-id-badge.png
User-assigned sheets give only the users assigned to the sheet access to the sheet.
This method protects only the information gathered in the sheet. This includes social security numbers and addresses. It doesn't protect the account data generated by this information. Others can view the salary account when it appears on other sheets, reports, or charts.
Method
  1. Build a user-assigned sheet as your personnel sheet.
  2. Assign the HR manager to the sheet. Don't assign any other users to the sheet.
  3. Don't use any columns with sensitive data as the row key.
Result
  • The HR manager can access the sheet and all its data.
  • The VP and inventory manager:
    • Can't open the sheet.
    • Can't view employee social security numbers and addresses.
    • Can view the salary account in reports, charts, and other sheets at their owned levels.
    • Can explore the salary account details to see the salary of each employee in their owned levels.
    • Can reference the salary account in formulas.
Get Started

Salary Detail Permission and Settings

wd-accent-shield-checkmark.png
The salary detail settings are an access control found in general ledger and custom account settings, modeled sheet properties, and shared snapshot reports. The settings work with the
Access Salary Detail
user permission.
This method protects both the sensitive information and the sensitive account details. At the same time, this method gives other users access to only the total expense of salaries. The
Access Salary Detail
permission also enables you to edit lookup values in modeled sheets.
Method
  1. Tag the modeled sheet with the salary detail setting. This tags all the modeled sheet accounts with salary detail setting.
  2. Tag any snapshot reports that use the accounts with the salary detail setting.
  3. Give only the HR manager the Access Salary Detail permission.
Result
  • HR manager:
    • Can open the modeled sheet.
    • Can view and reference all accounts and details throughout the model.
    • Can edit lookup values on the modeled sheet.
  • VP and inventory manager:
    • Can't open the sheet or any tagged snapshot reports.
    • Can't view employee social security numbers and addresses.
    • Can't explore the salary account details to see the salaries of employees.
    • Can view only the salary account totals in reports, charts, and other sheets at their owned levels.
    • Can run reports and reference only the salary account
      totals
      at owned levels.
Get Started

Access Rules

wd-accent-credentials (1).png
Access rules let you define specific intersections of data that users or groups can edit or view.
This method offers different levels of protection per user.
Method
  1. Create an Edit access rule for the HR manager. Grant the modeled sheet name at all levels.
  2. Create a Full View access rule for the VP. Grant the modeled sheet's salary account at the Sales level.
  3. Create a Limited View access rule for the VP. Grant the modeled sheet name at all levels.
  4. Create a rule for the inventory manager. Don't include the modeled sheet in the rule.
Result
  • HR manager can open the entire sheet and edit all account details.
  • VP:
    • Can view the entire modeled sheet.
    • Can explore the salary account to view employee salaries at the Sales level.
    • Can view only the salary account totals at all other levels.
    • Can run reports and charts that show the employee salaries at the sales level and the totals for all other levels.
  • Inventory manager can’t open the modeled sheet or view or use any of its accounts in formulas, reports, or charts.
Get Started

Other Forms of Protection

To see how everything fits together, start with Concept: Security Structure.