We are running into this issue, i’m the owner of various databases managed by the countries. There they can manage sensitive information like FCRM.
As the owner i’m able to see it all, is there a way to give to the owner a specific role with the read disable and assign this role to the owner for specific databases?
Long-term we want to remove the special “database owner” role. Instead all users will have a role and a database is just owned by a billing account (organization).
This is a big-ish change so won’t happen over night. I hope to make some progress against it in the Fall though.
In the meantime, the only thing I can suggest is setting up a service account at the ACF level that is used to add and own databases. Something like fcrm-owner@acfspain.org. We can transfer the databases to this account and then you can block access to it. You can email support@activityinfo.org once you have the account set up.
I’ve requested per email the change, i hope that with this we will be able to comply to the data protection issue of me being able to see it all, including feedback & complaints that can be sensitive.