QuestionQ1072

Security and Access

An analytics user at Cloud Kicks requires Read, Create, and Edit access to objects but must be prevented from deleting any records.

What should the administrator do to satisfy this requirement?

  • A Create and assign a custom profile with Delete access removed for each object.
  • B Create and assign a permission set that includes Read, Create, and Edit access.
  • C Assign the standard System Administrator profile to the analytics user.
  • D Give the user View All access and assign them to the highest role in the role hierarchy.
Explanation

Salesforce object permissions control a user's base-level ability to read, create, edit, and delete records. A custom profile can grant Read, Create, and Edit while removing Delete for each applicable object. Permission sets are additive and therefore cannot be used to revoke Delete access already granted by a profile.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!