  • Permissions can be used to limit the damage that can be done by mistakes and attackers.
  • Set policies that allow different types of data to be accessed by different people.
  • Administrators access everything.
  • Customers access their own data.
  • Employees access customers’ data, but (mostly) not each other’s data.
