# Permissions - Add to Entity based on Related Entity

**URL:** https://community.fibery.io/t/permissions-add-to-entity-based-on-related-entity/859
**Category:** Ideas & Features
**Created:** [July 26, 2020, 5:42pm UTC](https://community.fibery.io/t/permissions-add-to-entity-based-on-related-entity/859 "2020-07-26T17:42:28Z")
**Posts on this page:** 1
**Showing post:** 2

<div class="post-metadata">

### Author: ![B\_Sp](https://avatars.discourse-cdn.com/v4/letter/b/e8c25b/32.png) [@B\_Sp](https://community.fibery.io/u/B_Sp)
#### Post date: [November 12, 2020, 5:53pm UTC](https://community.fibery.io/t/permissions-add-to-entity-based-on-related-entity/859/2 "2020-11-12T17:53:56Z")

</div>

Hi again,

I’d be grateful if anybody could help me with this one based on today’s release here:

> [@CHANGELOG: November 12 / True "No Access" permissions, Jira integration](https://community.fibery.io/t/changelog-november-12-true-no-access-permissions-jira-integration/1160/1):
>
> ## 💪 True “No Access” permissions
> 
> In Fibery you can restrict access to Apps. Previously a user with no access to an App saw an awful lot of sensitive data, like names of all entities. Name was a public attribute visible to all people, even without any access. It appeared this decision was not correct and it took us a couple of months to solve it. The only thing that remains visible is entity Id, and it does not contain any information.
> 
> For example, a user has access to Employees but has no access to Salaries. Salaries are connected to Employee, but this information will be hidden from a user.
> 
> It all means you can safely use Fibery for sensitive data and be sure that restricted entities will not be visible anywhere (UI, Search results, API, etc).
> 
> Now we can move to functional permissions improvements, like simplify permissions management, add read-only users, and implement entity-level access.

I am trying to set up Time Tracking based on some Team Fibery suggestions I quoted above, and the new article [here.](https://blog.fibery.io/time-tracking/). My big question is can I have an App for Time Tracking. The Type in question will be “Time Entries.” I’d like to relate this to any number of other Types. **All** users will have access to this “Time Entry” type. But the types that will be related to will have limited access, for example some Finance or Executive-level stuff. So all of the team will be tracking time in this one “Time Entry” Type. But I’d like to limit the ability for some users with limited permissions to see _all_ related entities, because some of those they won’t have access to.

Hope that makes sense and glad for any guidance out there. I’m hoping this is also a use case for many who are trying to track time in Fibery!

---

_[View the full topic](https://community.fibery.io/t/permissions-add-to-entity-based-on-related-entity/859)._
