Skip to Main Content
Community Feedback

We love to hear your feedback. Your suggestions and ideas are important to us. Our feedback forum is a great place to post your ideas and vote on others. Please share your detailed use case and how the proposed enhancements can increase value to your business. We do read all of your posts, but may not be able to respond to all comments.

More information on the status of submitted ideas can be
found here

Status New idea
Categories Recruitment
Created by Guest
Created on Aug 10, 2026

Candidate Search – Ensure Confidential Job and Application Visibility Follows User Permissions

While access to confidential job postings can be restricted through user permission settings, we have identified a significant security concern whereby all job postings, including confidential positions and their associated candidate applications, remain visible and accessible through the Candidate Search function regardless of the user's assigned permissions.

This unreasonable behavior creates data security and confidentiality risk as users can access to sensitive recruitment information that they are not authorized to view.

Access controls and permission settings should be enforced consistently across all system modules, tabs, and functions. Users should only be able to view and access jobs and candidate data for which they have been explicitly granted permission, irrespective of the navigation path or feature.

What business value are you trying to achieve?

To strengthen data security, confidentiality, and governance by ensuring that access to recruitment information is consistently controlled according to user permissions across all system functions.

The enhancement will help prevent unauthorized access to confidential job postings and candidate information, reduce data privacy and compliance risks, and ensure that sensitive recruitment data is only available to authorized users. Consistent enforcement of access controls across the system will improve user trust, support audit and compliance requirements, and align system behavior with established security policies and best practices.

  • Attach files