Admin Dashboard securely hidden?

Hello guys,

following situation:

  • We have 2 roles, Admin & Customer
  • We created an admin dashboard, where my team can see all orders from our customers. There, we can also change everything on the order, even the pricing and everything.
  • We have a 2 way row owner configuration, so every customer is row owner of their orders, and in a second column we have the 2nd row owner, were we set the role “admin” as row owner too.

My first question now is: Is there any possibility were someone with high computer skills can go over the visibility wall, see the hidden tabs and change prices e.g?? I am super concerned.
My second question is: Do i need to configure visibility options on every part and page in the admin dashboard or is it automatically hidden, when the tab for all of this is already hidden?

Thanks!!!

If that person is logging in with an email that doesn’t have access to records based on row owners, then those rows are never downloaded to their device, they can’t see those roles to edit at all.

When the tab is hidden, there’s no way they can see the components on that tab, so it’s safe to just handle it at the tab level.

2 Likes