on ‎2023 May 19 7:22 PM
Hello all,
We are exploring the possibility of allowing SF to accept photos from a third party CV creation/generation tool. I have general security concerns about allowing this, but looking for specifics.
Does anyone have experience with allowing such access to have a 3rd party (non SAP) system to add/edit the employee photo in SF?
Thanks
Request clarification before answering.
I mean from a functional standpoint there's not much that would stop this from happening as the Photo Odata API would allow it (ideally via a CSV on an SFTP with some of the relevant details such as the file name and user ID as well as the actual photos). Deleting the photo could be a bit more tricky as most CV tools don't have good API data for deletions (so its hard to inform SuccessFactors about it then).
The more difficult part is the security bit, because where in the CV tool are you requesting permission to move those photos? Or is it possibly added as a clause in the contract (which would be a lot worse, because then people have to specifically request you to remove it via email or such or you have to let them remove it themselves in SuccessFactors if desired). To me these are things that cannot easily be tackled, but in the end you can just make it easier by contacting the person assigned as DPO (Data Privacy Officer) in your organisation.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
| User | Count |
|---|---|
| 7 | |
| 3 | |
| 3 | |
| 2 | |
| 2 | |
| 1 | |
| 1 | |
| 1 | |
| 1 | |
| 1 |
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.