Item visibility is determined by workspace permissions, and Additional Ownership.
But picklists and “Add Item” (to Bom, Managed Items, Relationships tab, etc) show me items that I do not have the ability to view.
This allows
- one supplier to see the existence of parts belonging to another supplier. (Not the items themselves, but their descriptor / existence)
- Or when I add a document to my part, I can see that sensitive documents exist just by their descriptors.
- A supplier could see which of their competitors their customer is using, based on descriptors.
I cannot deploy some Bom building functionality because Add Item is allowing a supplier to see other suppliers’ component descriptors, which are otherwise hidden from him.
For backwards compatibility, please implement as a General Setting checkbox “Filter Picklists and ‘Add’ by item visibility” = Y/N (default is N).
This will improve the data security when incorporating supplier chain users into FLC, and help roll-out to functions where descriptor visibility is required (ITAR, defense, financial documents etc)