Assessment permissions
You can protect the sensitive information in your assessments by providing granular permissions to your assessments. When conducting an assessment, you can set one or more assignees for the assessment on the Properties tab. In addition, you can define if the assessment will be visible to only the owner and the assignees (private) or to everyone (public). Assessment permissions ensure that other users do not edit, complete, or submit your assessment unless you have added them as assignees.
- By default, the assessments that are created in 2023.02 or later are private. That is, only the owner and assignees can view those assessments.
- By default, the assessments that were created prior to 2023.02 are public. That is, everyone can view those assessments. If an assessment that you created prior to 2023.02 contains sensitive information and is in the Draft status, we recommend that you change the permissions of that assessment so that only you and the assignees that you select can view the assessment.
Modify the assessment permissions
To modify the permissions when conducting an assessment, on the Properties tab, in the View Permissions section, select one of the following options:
- Everyone: Everyone can view the assessment. Only you can edit, complete, or submit the assessment.
- Only Owner and Assignees: Only you and the assignees that you select can view, edit, complete, or submit the assessment. For more information, go to the next section.If you selected the Only Owner and Assignees option, in the Assignees field, you can indicate the allowed assignees by selecting their names.
Note A user with the Sysadmin global role can edit the assessment if it is in the Draft status, regardless of the assessment permissions.
Permissions granted to the assessment assignees
The assignees of an assessment can do all of the following:
- View the assessment regardless of its status.
- Edit the assessment if it is in the Draft status.
- Complete or submit the assessment if it is in the Draft status.
- Copy the assessment regardless of its status.
- Download a PDF of the assessment regardless of its status.