I assume the task is readonly, you can change that. That will error out if someone without write access to the task tries to act on it.Now if a task is asssigned to Bjorn and Joe clicks on the URL, when TS opens, who is the recognized user ?
if a task is assigned to Jim Bob [...] Michelle shouldn't be able to jack around with it unless she were a master
Also, the role that the user has does not have "allow modify others' tasks" set to true.
Just to make sure - have you tried it without using mails, CC URL Commands and all this nice Jazz? Is manifestation the same?What happens when Michelle simply logs in and tries to "jack around" with Jim/Bob Task?
Your wording is confusing. The role of Michelle (say editor) does not have allow modify others' tasks set. It does not matter what Jim Bob's settings are.
When done only through CC without any of "that jazz", nice or not, it all works as expected because the roles for these users are configured to not allow them to see other people's tasks, so they can't even get to the point where they could take action on anyone else's task. It is indeed only with the URL Commands apparently.
The above is just a guess, but it would seem to fit the symptoms...
There's no need to put quotes around the term jack around. It's industry standard nomenclature.When done only through CC without any of "that jazz", nice or not, it all works as expected because the roles for these users are configured to not allow them to see other people's tasks, so they can't even get to the point where they could take action on anyone else's task. It is indeed only with the URL Commands apparently.
There's no need to put quotes around the term that jazz. It's standard American metaphor.
This is going to sound confrontational even though I don't intend it to be so, but what's your point? Meaning - if there is anything else I can clarify, I would like to do so, but am not sure what specific clarifications would be the most helpful.
Check the role of the person who clicked the URL and make certain that the ability to approve other persons task is not checked for that role. The way you worded it seemed to imply it was not set for the desired approver not the intercepting approver.
Workflow section, More Detail, Permissions OverridesAllow users to:Modify tasks and jobs that they do not own
Ok. I've confirmed that this is UNchecked.
Have you contacted Support on this issue? It would be interesting to see if this is an anomoly or something they have seen before.
Remember - contacting support and getting support are two different things.
But if you don't contact support you will never get support. How profound is that?Support is better than you think, in general. If you press them and escalate your issues, as appropriate, you will get decent help. It also helps if you know which support engineers are the good ones and make sure they take your case. But that only comes after years of pain...
[rant]Support isn't a free set of forums like devnet or other places where kissing a little rear and being a good, persistent soldier generally tends to work to your favor. Support is something we pay for. If you pay for your cheeseburger at McDonald's, you don't expect to wait 20 minutes to get it, nor do you expect to have to keep climbing over the counter and going in back and asking the guy frying it up why it's taking so long or why he won't put cheese on it even though you asked for cheese. Your payment was a contract, even if it is just a burger, and a small one at that.Am I being, as Marv Levy said, an orificious jerk? Yeah. Probably. But I see the itemization of what my company drops on "maintenance" and I can't help but think that someone should be going out of their way to make my job easier -- not the other way around.[/rant]Sorry. I feel a bit better now.
While I understand the rant, the content of the rant leads to the conclusion that if you pay for support, you should use it to try to find an answer to this issue. It doesn't hurt to post questions about it here too - but why close out one avenue of potential help, especially since it's already being paid for?