You are here:
Manage Feature Access for Data Space-Aware Data Cloud Features
By default, Data Cloud standard permission sets control access to Data Cloud features with preset object permissions. You can further restrict feature access within each data space assigned to a permission set by changing the data space’s feature permissions.
Feature access is managed on the permission set level with object permissions, and on the data space level within a permission set with feature permissions.
Set Default Feature Access in a Permission Set with Object Permissions
Object permissions apply to all data spaces associated with a permission set by default. To update object permissions on a permission set, in Setup, select the permission set and go to the Object Settings.
Considerations
Feature permissions can’t be applied if object permissions on any object for the feature are “View All Records” or Modify All Records.” If object permissions are set to View All Records, the Read access setting in feature permissions is overridden. If object permissions are set to Modify All Records, the Customize access setting is overridden.
Changing object permissions doesn’t change feature permissions in associated data spaces. For example, if you change object permission on the Activation Definition object from View to Create, the Customize checkbox in feature permissions for associated data spaces isn’t changed. To allow users assigned to the permission set to customize activations, a system admin must manually set Customize on Activations in the feature permissions for each associated data space.
Restrict Access Within Specific Data Spaces in a Permission Set with Feature Permissions
Feature permissions override object permissions and are used to further restrict access within specific data spaces. Feature permissions act only within the data space they’re set for. You can’t use feature settings to give more access than what is permitted by the permission set’s object permissions.
Feature permissions control levels of access using two settings: View or Customize. These settings correlate with the object permissions on the primary object for the feature. If the permission set’s object permissions grant Read access on the feature’s primary object, then View is available in the associated data space’s feature permissions. Deselecting View removes Read access for that feature within the data space. Users assigned to the permission set can’t see data associated with the data space. If the object permissions include Create, Edit, or Delete, then Customize is available in the feature permissions. Deselecting Customize removes permission to create, edit, or delete data within the feature.
| Feature | Primary Object |
|---|---|
| Activations | Activation Definition |
| Calculated Insights | Calculated Insight Object Definitions |
| Segmentation | Market Segment Definitions |
| Data Actions | Data Action Definitions |
| Identity Resolution | Identity Resolution Definitions |
| Data Shares | Data Share Definitions |
| Data Graphs | Data Graph Definitions |
To update feature permissions for a data space, in Setup, select the permission set and go to the Data Cloud Data Space Management, then select a data space.

