In many nonprofits, "Interaction Summaries" (meeting notes) contain highly sensitive information. A caseworker's notes on a victim of domestic violence must be kept strictly confidential from a fundraiser who might be looking at the same constituent record for a donation appeal.
To solve this challenge, Nonprofit Cloud utilizes Compliant Data Sharing (CDS).
How CDS Secures Interaction Summaries:
Record-Level Restriction: By default, Interaction Summaries can be set to "Private" in the Organization-Wide Defaults (OWD).
Role-Based Access: Compliant Data Sharing allows the organization to grant access based on the user's specific role in relation to that record. For example, only the "Assigned Caseworker" and "Program Supervisor" roles are granted "Read" access to the summary.
Departmental Silos: Because fundraisers are not assigned a "Program" role in the CDS configuration for those specific records, they will not be able to see the Interaction Summaries, even if they have access to the Person Account record.
Auditability: CDS provides a clear audit trail of who was granted access to sensitive notes and why, which is critical for legal compliance in social services.
Why other options are incorrect:
Permission Sets (Option A): These grant the ability to use the Interaction Summary object (CRUD), but they do not control which specific records a user can see. If OWD is set to Public, Permission Sets won't hide specific department notes.
Session Security (Option B): This deals with 2-factor authentication and login requirements, not record-level data visibility between departments. Compliant Data Sharing is the standard Industry Cloud tool for this level of granular privacy.
Submit