# האם חברי T4 יכולים לגשת למידע מזוהה באופן אישי?

**URL:** https://meta.discourse.org/t/can-t4-members-access-personally-identifiable-information/325668
**Category:** Support
**Tags:** trust-levels
**Created:** [9 בספטמבר,‏ 2024,‏ 4:07pm UTC](https://meta.discourse.org/t/can-t4-members-access-personally-identifiable-information/325668 "2024-09-09T16:07:57Z")
**Posts on this page:** 9
**Page:** 1

<div class="post-metadata">

### Author: ![hmmmnotsure](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/hmmmnotsure/32/472794_2.png) [@hmmmnotsure](https://meta.discourse.org/u/hmmmnotsure)
#### Post date: [9 בספטמבר,‏ 2024,‏ 4:07pm UTC](https://meta.discourse.org/t/can-t4-members-access-personally-identifiable-information/325668/1 "2024-09-09T16:07:57Z")

</div>

Can T4 members access personally identifiable information like other customers’ email address?  
Is this updated?

> [@Trust Level Permissions Reference](https://meta.discourse.org/t/trust-level-permissions-reference/224824):
>
> bookmark This reference aims to be a comprehensive list of Discourse features, marked by Trust Level, and including the relevant admin settings which influence them. Trust Level Grid - Defaults TL = Trust Level dependant gear = Can be enabled or adjusted by an admin setting gearTL0 TL1 TL2 TL3 TL4 Category Moderator Moderator [[1]](#footnote-1091734-1) Post Replieswhite_check_markwhite_check_markwhite_check_markwhite_check_markwhite_check_markTLwhite_check_mark[[2]](#footnote-1091734-2) Post Topic…

How can I restrict them from editing other customers’ posts?

I don’t want this to happen, “Flagging a post immediately takes effect and hides the target post” because they currently flag posts for escalating issues too.

I don’t want them to send personal messages to an email address, or close topics.

---

<div class="post-metadata">

### Author: ![Moin](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/moin/32/554653_2.png) [@Moin](https://meta.discourse.org/u/Moin)
#### Post date: [9 בספטמבר,‏ 2024,‏ 4:14pm UTC](https://meta.discourse.org/t/can-t4-members-access-personally-identifiable-information/325668/2 "2024-09-09T16:14:44Z")

</div>

In general, the table mentions the related settings. For example, if you don’t want them to be able to edit all posts, you can remove them from the `edit all post groups` site setting.

 ![Screenshot_20240909_180911_Chrome](https://global.discourse-cdn.com/meta/original/4X/8/b/9/8b9aa5bae2b9e54ae8b3d38873172d28ee26fb1b.jpeg)

But I don’t think it’s possible to prevent them from for example closing topics. Since you manually promote those users, can’t you trust them enough so they won’t do something if you tell them not to do it?  
What is the reason why you want them to be trust level 4?

---

<div class="post-metadata">

### Author: ![NateDhaliwal](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/natedhaliwal/32/313494_2.png) [@NateDhaliwal](https://meta.discourse.org/u/NateDhaliwal)
#### Post date: [9 בספטמבר,‏ 2024,‏ 11:06pm UTC](https://meta.discourse.org/t/can-t4-members-access-personally-identifiable-information/325668/3 "2024-09-09T23:06:09Z")

</div>

In addition, if you remove all these features, then… there’s almost no perks of being TL4…  
That said, TL4s aren’t able to access user’s PII, as that is only visible for Mods and Admins.

---

<div class="post-metadata">

### Author: ![Heliosurge](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/heliosurge/32/571810_2.png) [@Heliosurge](https://meta.discourse.org/u/Heliosurge)
#### Post date: [11 בספטמבר,‏ 2024,‏ 4:51am UTC](https://meta.discourse.org/t/can-t4-members-access-personally-identifiable-information/325668/4 "2024-09-11T04:51:36Z")

</div>

> [@hmmmnotsure](#):
>
> information like other customers’ email address?  
> Is this updated

Unless something has changed generally only an Admin & maybe full site mod(if a setting is changed) can view a member’s email address.

However unless changed there was a bit of loophole for full site moderators viewing Log file. Iirc this was typically more exposed(email address) during a user deletion/anonymized user. The log contained the email address.

TL4 cannot view user account details typically unless there is a setting to expose that.

* * *

I as admin have had to figure out a clever method of unanomize a user or 2 when a Mod took an unsanctioned action against a member on a site I volunteer admin on. Not perfect to restore but is in part doable.

---

<div class="post-metadata">

### Author: ![hmmmnotsure](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/hmmmnotsure/32/472794_2.png) [@hmmmnotsure](https://meta.discourse.org/u/hmmmnotsure)
#### Post date: [11 בספטמבר,‏ 2024,‏ 8:39pm UTC](https://meta.discourse.org/t/can-t4-members-access-personally-identifiable-information/325668/5 "2024-09-11T20:39:10Z")

</div>

Thank you for your responses.

I’ll ask them not to use certain features. Seems like a better way to go.

---

<div class="post-metadata">

### Author: ![hmmmnotsure](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/hmmmnotsure/32/472794_2.png) [@hmmmnotsure](https://meta.discourse.org/u/hmmmnotsure)
#### Post date: [12 בספטמבר,‏ 2024,‏ 3:02pm UTC](https://meta.discourse.org/t/can-t4-members-access-personally-identifiable-information/325668/6 "2024-09-12T15:02:41Z")

</div>

One more question, can T4 members block (ban) spammers and delete the spam posts? Or can they only temporarily mute?

---

<div class="post-metadata">

### Author: ![Heliosurge](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/heliosurge/32/571810_2.png) [@Heliosurge](https://meta.discourse.org/u/Heliosurge)
#### Post date: [12 בספטמבר,‏ 2024,‏ 5:44pm UTC](https://meta.discourse.org/t/can-t4-members-access-personally-identifiable-information/325668/7 "2024-09-12T17:44:43Z")

</div>

TL4 is an elevated account that can edit/delete posts

Category Moderators can manage flags; however unless something has changed. The Cat Mod can only “agree”, “Disagree” or “ignore/defer” a flag.

Full site Moderator/Admin is required to ban/delete/anonymize user accounts.

A general good thing to do is to have your TL4 and/or Cat Mods either reflag post as Other and @mention a full mod for assistance. That or message a full mod with a link to the post/user.

---

<div class="post-metadata">

### Author: ![Heliosurge](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/heliosurge/32/571810_2.png) [@Heliosurge](https://meta.discourse.org/u/Heliosurge)
#### Post date: [12 בספטמבר,‏ 2024,‏ 5:52pm UTC](https://meta.discourse.org/t/can-t4-members-access-personally-identifiable-information/325668/8 "2024-09-12T17:52:33Z")

</div>

These 2 links will help from #Documentation category.

First link Managing a Discourse site Index

> [@Site Management Index](https://meta.discourse.org/t/site-management-index/308032):
>
> Documentation covering the configuration, setup, and ongoing management of Discourse - useful for site owners and administrators. Users User statuses: [Understanding user statuses, roles, and permissions](https://meta.discourse.org/t/understanding-user-statuses-roles-and-permissions/35171?silent=true) Configure invites: [Configuring how users can create and send invites for others to join your community](https://meta.discourse.org/t/configure-how-users-can-create-and-send-invites-for-others-to-join-your-community/124096?silent=true) Change user’s email: [Changing a user's email address when they can't access their account](https://meta.discourse.org/t/change-a-users-email-when-they-cant-access-the-email-account-and-forgot-password/56322?silent=true) Sign-up flow: [Configuring and managing the sign-up flow with user approval](https://meta.discourse.org/t/sign-up-flow-when-must-approve-users-is-configured/112128?silent=true) Merge accounts: [Merging use…](https://meta.discourse.org/t/merge-user-accounts/275288?silent=true)

2nd Link User Roles & permissions from the above.

> [@Understanding user statuses, roles, and permissions](https://meta.discourse.org/t/understanding-user-statuses-roles-and-permissions/35171):
>
> bookmark This is a guide for understanding the various user statuses, roles, and permissions within Discourse, including how they affect user capabilities and how they are stored in the database. person_raising_hand Required user level: Administrator Discourse has many built-in user statuses, roles, and permissions. These statuses and roles can be seen for a given user when viewing their profile from the users’ section of the admin dashboard: Permi…

The Documentation Category is a special Category access it from the sidebar many new improvements makes it a lot more user friendly to find info about Discourse.

---

<div class="post-metadata">

### Author: ![system](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/system/32/443519_2.png) [@system](https://meta.discourse.org/u/system)
#### Post date: [12 באוקטובר,‏ 2024,‏ 5:52pm UTC](https://meta.discourse.org/t/can-t4-members-access-personally-identifiable-information/325668/9 "2024-10-12T17:52:56Z")

</div>

This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.
