Manage User Roles and Privileges > Managing data access rules > Setting permissions in data access rules
  

Setting permissions in data access rules

By default, all existing data access rules include the read permission.
Based on the permissions you select, users assigned to user roles that are associated with these data access rules can access data in MDM SaaS. You can edit an existing data access rule to set create, read, update, and delete permissions. When you configure a new data access rule, you can set the create, read, update, and delete permissions.
For example, you run a retail company and want to control inventory access to ensure data accuracy and security. Your company has user roles such as Warehouse Staff, Inventory Manager, and Auditor. To provide controlled access to product data, you need to assign different permissions to each user role.
To provide better access control and enhance data security, understand the following permissions that each user role requires:
Note: You can't set create permissions in data access rules that you configure with conditions on relationship assets.
For more information about configuring data access rules and setting permissions, see Defining data access rules and Configure rule conditions for business entity attributes.

Rules and guidelines for setting permissions in data access rules

Consider the following rules and guidelines when you set permissions in data access rules: