To extract metadata and to configure other capabilities that a catalog source might include, you need account access and permissions on the source system. The permissions required might vary depending on the capability.
Permissions to extract metadata
Ensure that you have the required permissions to enable metadata extraction.
Perform the following tasks:
•Assign the Data Cloud Admin or the Data Cloud User permission sets to the user.
•Grant access to the data spaces for the Data Cloud User permission set in the Data Space Management settings.
•Assign the following permissions to the Salesforce profile or permission sets:
- Modify All Data. Allows you to extract all objects. If you don't want Salesforce to modify all data, select View All Data.
Note:
If you select View All Data, you might not extract some objects. For more information, see the Knowledge Base article 000196069.
- API Enabled. Allows you to access the data of your organization through API requests to your Salesforce instance.
- Manage Flows permissions to use flows.
•Assign the following OAuth scopes to external client apps:
- Perform requests at any time (refresh_token, offline_access)
- Access the Salesforce API Platform (sfap_api)
- Access all Data Cloud API resources (cdp_api)
For more information about Oauth tokens and scopes, see the Salesforce documentation.
Permissions to run data profiles
You can run profiles with the permissions required on the source system to perform metadata extraction.
Permissions to perform data classification
You can perform data classification with the permissions required on the source system to perform metadata extraction.
Permissions to perform relationship discovery
You can perform relationship discovery with the permissions required on the source system to perform metadata extraction.
Permissions to perform glossary association
You can perform glossary association with the permissions required on the source system to perform metadata extraction.