Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Enforce ACL on HR Core Data [New in Security Center 2.0]

Learn how to configure the glide.enforce_security_scope.sn_hr_core property so that the Human Resources Scoped App: Core (com.sn_hr_core) plugin does not expose sensitive data to access control lists (ACLs) from all other scopes.

The glide.enforce_security_scope.sn_hr_core property restricts the access control lists (ACLs) of several global data tables like sys_attachment and sys_email to only consider the sn_hr_core scope. If this property is not set to the recommended value of true, then data from the Human Resources Scoped App: Core plugin will be exposed to ACLs from all other scopes. For instance, this could result in the IT administrator gaining access to human resources data.

Warning: This is a safe harbor property, meaning the value can't be altered once it's changed. It is non-revertible.

More information

AttributeDescription
Configuration nameglide.enforce_security_scope.sn_hr_core
Configuration typeSystem Properties \(/sys\_properties\_list.do\)
Data typeBoolean
Recommended valuetrue
Default valuetrue
CategoryAccess control
Security risk- Severity score: 6.5 - CVSS score: Medium - Security risk details: If this property is not set to the secure value of true, then data from the Human Resources Scoped App: Core plugin will be exposed to ACLs from all other scopes.
Dependencies and prerequisitesNone
ReferencesActivate Case and Knowledge Management

Parent Topic:Access control