Photo by Markus Winkler on Unsplash
I used to clone profiles to give different teams slightly different access… until I discovered Permission Sets. Now I’m obsessed.
Instead of creating a million profiles, I use one shared profile per job function, and layer access with permission sets.
Example:
Everyone on the Support Team uses the “Support User” profile
If one person needs extra access to edit a certain object, I just assign a permission set
Why this rules:
Easier to manage access for individuals
Keeps profile sprawl under control
You can assign permission sets based on permission set groups, which is way cleaner
Seriously, if you're still cloning profiles to solve problems—stop. Start learning permission sets now.