ER Permissions

Public

Report permissions

In Enhanced Reporting, users can be set with either

  • Restricted read only access, to only allow users to view and download reports. )Read-only users cannot drill down into measures in a report or a dashboard)
  • Full access to allow them to edit, share, schedule reports and use the Explore from here functionality.

Note: Adjusting permissions for a user will take 15-60 minutes to flow through into ER (same timeframe as for data updates to flow into ER).

Read only access

On the Enhanced Reporting home page, the Actions icon will only contain the View report option.

Configuration

To configure these features the following settings are available in a permission group:

  • Reports section
    • Enhanced Reporting - controls restricted read only access, refer below for details
    • Enhanced Reporting Administrator - controls the ability to: view and create a draft of any shared report; view all report schedules; reassign ownership of all reports and schedules to other system users.
    • Enhanced Reporting Dashboards - If selected the Dashboard tab will display in Enhanced Reporting and in the job card. Currently you will see any custom dashboard on this page if you are an Advanced Analytics customer. Coming soon - all standard dashboards migrated to this page.
    • Manage Enhanced Reports - Controls full access (i.e. Editor) , refer below for details.

Note: Parent settings need to be selected to activate child settings.

Related article: Editing a permission group.

Permission types

An extended break down of access:

Restricted read only access

When the permission Enhanced Reporting is selected:

Access

  • Enhanced reporting homepage - Yes
  • Create new report - No
  • Cog > Move to Trash - No

Report shared with user

  • View shared report - Yes
  • Create draft of shared report - No
  • Cog > Explore from here - No
  • Cog > Edit - No
  • Cog > Download - Yes
  • Cog > Send - No
  • Cog > Schedule - No
  • View Drill down - No

Full access

When both permissions Enhanced Reporting and Manage Enhanced Reports are selected:

Access:

  • Enhanced reporting homepage - Yes
  • Create new report - Yes
  • Cog > Move to Trash - Yes
  • Create and edit Dashboards - Yes

Report shared with user

  • View shared report - Yes
  • Create draft of shared report - Yes
  • Cog > Explore from here - Yes
  • Cog > Edit - Yes
  • Cog > Download - Yes
  • Cog > Send - Yes
  • Cog > Schedule - Yes
  • View Drill down - Yes

View reports in Employee Portal

To enable access to enhanced reporting on for employees in the employee portal, select the View reports permission under Employee services.

 

Data access restrictions

The restrictions will apply whenever a report query needs to access or join via the related tables. This means its possible to get partial results. For example, if you have access to a job but the applicant is private then you will be able to see fields from the job and application but not the applicant.

Applicant Search / All Candidates

One of the following must be true

  • User is PUAdmin
  • The user is set with Admin for Recruitment management under Product permissions in their profile.
  • The applicant is not locked to a user or team.
    • User is a member of the team (primary or secondary) that an applicant as been specifically restricted to lPrivateTeamID.
    • User is the user that the applicant has been specifically restricted to lPrivateProviderID.

Employee (provider)

One of the following must be true

  • User is PUAdmin
  • Employee is the current user.
  • Employee is inside user's position hierarchy - up to 10 levels deep and user is an employee of any module.
  • The user is set with Admin for any module under Product permissions in their profile.

Job

One of the following must be true

  • User is PUAdmin
  • The user is set with Admin for Recruitment management under Product permissions in their profile.
  • User is a member of the job's team (primary or secondary).
  • User is a member of the job's recruiter's lProviderID team (primary or secondary).
  • User is the job's request provider lRequestProviderID.

Learning (development activity)

User must be able to see the employee, and one of the of the following must be true

  • User is PUAdmin
  • Employee is the current user.
  • The user is set with Admin for Training management under Product permissions in their profile.
  • Employee is inside user's position hierarchy - up to 10 levels deep; and the user is set with Employee for Training management under Product permissions in their profile.

Performance (performance review)

User must be able to see the employee, and one of the of the following must be true

  • User is PUAdmin
  • Employee is the current user.
  • The user is set with Admin for Performance management under Product permissions in their profile.
  • Employee is inside user’s position hierarchy - up to 10 levels deep; and the user is set with Employee for Performance management under Product permissions in their profile.
Was this article helpful?
0 out of 0 found this helpful