SAP Knowledge Base Article - Public

3629096 - Fields In Quick Action Are Editable EvenThough There Is No Permission Granted

Symptom

In Quick Action, certain field(s) are editable, but the same field is not editable in MSS UI.

Environment

SAP SuccessFactors Employee Central - Job Information

Reproducing the Issue

  1. Configure quick action (change department) and use the 'position' field.
  2. There is no permission provided for the login user to edit the position field in Job Information.
  3. However the position field is editable in quick action, while it is view only in MSS for the same users. 

Cause

 The field is editable because the logged in user might have one of the below permission: 

  • Employee Central HRIS OData API (read-only) OR
  • Employee Central HRIS OData API (editable) OR
  • Employee Central Import Entities > Job Information

Resolution

  • Employee Central HRIS OData API (read-only) and Employee Central HRIS OData API (editable) permissions are intended to be used only for system administrators in order to perform API actions, hence is not recommended to provided such permissions for regular users. 
  • Please remove these permissions from the logged in user:
    • Employee Central HRIS OData API (read-only)
    • Employee Central HRIS OData API (editable) 
    • Employee Central Import Entities > Job Information

Keywords

Job Information, quick action, change job, change department, position, INC13489622, permission, editable, MSS , KBA , LOD-SF-EC-JOB , Job Information , Problem

Product

SAP SuccessFactors Employee Central 2505