It would be great to be more flexible on permission per record. Currently, authorization must be scripted at the file level. This should be possible in the standard system and should be able to be maintained independently by a responsible employee