[Koha-bugs] [Bug 33793] Add method to define limited access to run reports

bugzilla-daemon at bugs.koha-community.org bugzilla-daemon at bugs.koha-community.org
Fri May 26 01:42:35 CEST 2023


https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=33793

David Cook <dcook at prosentient.com.au> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
                 CC|                            |dcook at prosentient.com.au

--- Comment #5 from David Cook <dcook at prosentient.com.au> ---
(In reply to AspenCat Team from comment #4)
> We would be interested in this as well.  We haven't had a problem yet, but
> it is a potential concern that someone can get personal patron data from a
> library they don't work at.  We would like to see this be secure and only
> staff who need to see that type of data, be able to see that type of data. -
> Bob Bennhoff

I was just thinking this same thing.

Locally, we have a mechanism where reports that include "borrowers" need to use
a token which is sent to a supervisor by email. That way, the supervisor knows
who is running those potentially sensitive reports and when they're running
them. (Kind of like some retail systems that require two people to authorize
certain transactions.)

-- 
You are receiving this mail because:
You are the assignee for the bug.
You are watching all bug changes.


More information about the Koha-bugs mailing list