Skip to content

Task sensitivity

Written for Managers Administrators

Certain tasks may be flagged as sensitive because they contain sensitive information. As a result, these tasks are required to have additional access controls.

Note

This guide explains how task sensitivity behaves by default. Your organisation may have modified this feature to suit its specific business needs.

What do sensitive tasks look like?

When viewing from the site inbox or task reports, sensitive tasks will appear redacted.

Kinds of sensitive tasks

By default, there are three different types of sensitive task based on the data they contain. Certain types of sensitive tasks require additional authorisation before you can access them.

Type of task Sensitive label Required authorisation
DSE assessment corrective actions DSE related data Health related data authorisation
Health surveillance corrective actions Health related data Health related data authorisation
Resolved injury related incidents Injury related data No additional authorisation required

Info

Sensitive tasks are typically confidential, meaning that only managers can see that they exist in the first place.

Authorisations

Authorisations can be assigned to employees to grant access to specific types of sensitive data. You can view the authorisations assigned to an employee on their record.

How to grant authorisations to employees

Sensitive tasks containing DSE or health-related data typically require a Health related data authorisation to be granted on the employee’s record. The steps below explain how to grant this authorisation to an employee.

The Health-Related Data authorisation is intended for relevant managers or administrators only. It should not be granted to employees with standard user access.

Warning

You can only grant this authorisation to other employees if you have the authorisation yourself. As a result, we recommend being conservative with who should be granted this access.

Step

From My Dashboard, click on Pick workspace and select the site where the employee is located.

Step

From the site inbox, click the Switch to Manage Mode button.

Step

Click Employee records on the manage sidebar.

Step

Find the employee from the list and click on their name

Step

On the employee's record, select Change access

Step

Grant the relevant authorisations or tags if the employee needs them (you can only configure this if you possess the tag yourself).

authorised/health — Assigning this tag grants the employee authorisation to access sensitive health data (e.g. Health Surveillance corrective actions) for the employees they manage.

Note

By default, all sites will have the authorised/health tag available, but depending on your site configuration you may have more.

Step

Once you have selected the authorisation(s), click Apply changes.

How to access sensitive tasks

Assuming you have the appropriate access and authorisation to view the task content, selecting the task or attempting to export task data will prompt you to complete an exception form.

The form requires you to provide the following information:

Access reason

You will be asked to provide a reason for requesting access to this data. This reason will be recorded in the system logs and visible to others who access the task, supporting transparency and accountability.

Important

Please provide a clear and legitimate reasons for accessing sensitive data. Unnecessary or unjustified access to sensitive data may have consequences under your organisation’s policies.

Access expiration

This allows you to specify how long you would like to retain access to the data before you are required to complete another exception form.

Access scope

Define the access scope of this exception.

Tip

The scope defines the area covered by a single exception request. For example, when accessing sensitive employee tasks, you can broaden the scope to include all employees or an entire site. This eliminates the need to submit a separate exception request for each employee.