Skip to content

Glossary · Compliance & Regulation

Field-Level Security

Also known as: Property permissions

Short answer

Field-level security controls which users can see or edit specific fields on a record, such as tax IDs, commissions or account numbers, even when they can see the record itself. Salesforce sets it through profiles and permission sets; HubSpot uses property permissions on Enterprise editions.

Field-Level Security explained

Record access and field access are separate. A client service rep may need to see a client's record but not their full Social Security number; an advisor may need production figures that operations should not see. Field-level security enforces this everywhere the field appears, including reports, list views and the API.

Restricting fields is a simple, auditable control for need-to-know access in regulated firms.

How Vantage Point helps: we design field-level access for sensitive data and test it across reports, integrations and AI connectors.

Frequently asked questions

Can HubSpot restrict access to specific properties?

Yes. HubSpot Enterprise editions support field-level permissions on properties, so only selected teams can view or edit them.

Does field-level security apply to the API?

Yes. In Salesforce, a user or integration cannot read or write a field through the API if field-level security hides it from them.

Last reviewed October 2, 2026 by the Vantage Point team. Browse all glossary terms →