Skip to content

🎨 Design: Restrict specific profile features to certain access levels

Actionable Insights

Actionable insights always have a follow-up action that needs to take place as a result of the research observation or data, and a clear recommendation or action associated with it. An actionable insight both defines the insight and clearly calls out the next step. These insights are tracked over time.

Dovetail link: https://dovetailapp.com/projects/354235e3-a3d8-41d2-a87e-df06f03f6326/insights/fc6a8afc-44b7-425f-af8c-1bfc06c71adf
Details: Certain profile features are more powerful/destructive than others. Users expressed that someone may accidentally flood a production site with requests, or perform some other action on production that should have been restricted to staging.
Action to take: Create more advanced options in scanner profiles only available to certain access levels. For example maybe “developers” can access the basic profiles, but only “maintainers” can set up an active scan.
Edited by Annabel Dunstone Gray