ADM-201 · Question #31
What are the defaults for Org wide Default (OWO) and Profile permissions for all Profiles that have View All Data or Modify All Data disabled on a custom object?
The correct answer is A. Private for OWD and CRED for Profiles. When "View All Data" or "Modify All Data" are disabled for a profile on a custom object, the Organization-Wide Defaults (OWD) default to Private, while the profile retains Create, Read, Edit, Delete (CRED) permissions.
Question
What are the defaults for Org wide Default (OWO) and Profile permissions for all Profiles that have View All Data or Modify All Data disabled on a custom object?
Options
- APrivate for OWD and CRED for Profiles
- BPrivate for OWD and No Access for Profiles
- CPublic Read/Write for OWD and CRED for Profiles
- DPublic Read/Write for OWD and No Access for Profiles
How the community answered
(34 responses)- A88% (30)
- B6% (2)
- C3% (1)
- D3% (1)
Why each option
When "View All Data" or "Modify All Data" are disabled for a profile on a custom object, the Organization-Wide Defaults (OWD) default to Private, while the profile retains Create, Read, Edit, Delete (CRED) permissions.
By default, when object-level permissions like 'View All Data' or 'Modify All Data' are disabled for a profile, the Organization-Wide Defaults (OWD) for that custom object are typically set to 'Private' to enforce the most restrictive access. However, profiles are still granted Create, Read, Edit, and Delete (CRED) permissions, which define what actions users can perform on records they *can* access through OWD, role hierarchy, or sharing rules.
While OWD might be Private, profiles are generally granted CRED permissions, not 'No Access', which would prevent any interaction with the object.
Public Read/Write for OWD would contradict the premise of disabled 'View All Data/Modify All Data', as it would grant broad access irrespective of individual record ownership.
Public Read/Write for OWD is incorrect in this scenario, and 'No Access' for profiles is generally too restrictive for a baseline profile permission.
Concept tested: Salesforce OWD and Profile Object Permissions
Source: https://help.salesforce.com/s/articleView?id=sf.security_owd_overview.htm&type=5
Topics
Community Discussion
No community discussion yet for this question.