Apologies for the delayed repsonse - I didn't get notified that there was any update to my thread! What we are trying to do is have sales people only see the accounts that they should have access to - i.e., those they own, that their team owns, and that have been explicitly shared with them. This is based on the SFDC Role Hierarchy, but there can be exceptions granted by using Groups, and Account Teams. We want for the Zuora Subscription records to align exactly with the visibility of the Account record in SFDC, so anybody who can see the Account can see the subscription, but those who can't see an account should not be able to run reports out of SFDC that include the related subscriptions. SFDC allows the inheriting of permissions for objects that are related in a parent/child relationship, but the Zuora subscriptions use a "lookup" relationship with the Account. We can't currently find a way to get around this. We are stuck with either opening up the permissions on the Subscription object, which allows wide ranging reporting of financially indicative information for our business, or locking it down, which doesn't allow folks who are part of the Account team to be able to see those subscriptions. Hopefully that helps to clarify exactly what we're facing here. Regards, Scott Bradley
... View more