Description
With the Vault Project Sync to Buzzsaw addin, the ‘Sync Now’ tool on the toolbar could be considered too powerful in nature, and potentially open to abuse, or misuse from uneducated users.
Impact
Users are able to accidentally sync more data than they realise in both directions between Vault and Buzzsaw. This has the potential to store data in locations which shouldn’t have it, and waste data storage space.
There is also a secondary issue which is probably more serious, which is that confidential data which is stored safely in Vault could now be synced on Buzzsaw and accessed from external consultants who probably shouldn't have access to this data. Permissions could be set in Buzzsaw, but this still won't stop someone innocently putting a confidential file in a folder which will be synced with a more 'publicly' accessible folder in Buzzsaw.
Severity
High
Solution
Some extra administration settings should probably be wrapped around this feature in order to control who can use it, and possibly how it is used.
Should there also be some settings to be able to choose which folders to sync, rather than syncing all?