GROW

config

The 'Assignable By' field is only managed by the LE Admin

This issue is found automatically by CODA.
Time to fix: 30min

Why is this an issue?

The plugin Lifecycle Events gives you the ability to automate the resolution of HR situations like new recruit onboarding. The "Assignable By" field is only allowed to be filled out by LE Admin. Changes to this parameter may put the security of HR data and the lifecycle event itself at risk.

Best practices

Remove all roles other than the LE Admin from the "Assignable By" box in order to maintain the instance's integrity and security and to secure critical HR data.

The steps are as follows:

  1. In the Filter Navigator, search for Roles

  2. Search the record where the sn hr le.admin is not the Assignable By field

  3. Change the Assignable By to sn_hr_le.admin and Save.