User Emulation - Add granular role-based privileges
At present, the settings for user emulation do not allow for granular role-based permissions. For example, there is no feature to restrict which other roles a user role can emulate. It would be incredibly useful for our staff to be able to emulate grantee user accounts. Unfortunately, we currently cannot enable this feature for them, as it allows them to emulate all other roles which includes higher-level users.
Something like "Roles this role can EMULATE" (reference attached image) would be incredibly useful.
Met with Ryan, need to revisit request
-
Brett Otto
commented
This is exactly what is needed. We allow some roles to emulate, we feel the lack of granularity adds risk. The ability to designate at a role level specifically who a user is allowed to emulate would do a lot to alleviate risk concerns.