---
sourceDocument: Australia Platform security
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/de-DE/platform-security

 Release :

    - australia

ft:locale :

    - de-DE

ft:publication_title :

    - Australia Platform security

ft:clusterId :

    - psec

bundleId :

    - psec

workflow :

    - Platform


---

# Enforce Security Scope for Service Application Information \[New in Security Center 2.0\]

# Enforce Security Scope for Service Application Information \[New in Security Center
2.0\] {#ariaid-title1}

* Freigeben Version: Australia
* 
* Aktualisiert 12. März 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 Minute Lesedauer

Use the glide.enforce_security_scope.sn_svc_appl property to
ensure that the data in master scope tables is secured.
When the glide.enforce_security_scope.sn_svc_appl_info property
is set to true, access to resources within the scope is determined solely by the
access control lists (ACLs) from the Service Application Information plugin
(sn_svc_appl_info). This ensures the security of data in master scope tables by
restricting access permissions to those defined within the sn_svc_appl_info
scope.

If set to the insecure value of false, ACLs from all scopes are considered when
granting access to data in master scope tables such as sys_attachment. This could
lead to unauthorized access to sensitive information by users who do not have
permissions for the Service Application Information data.

## More information {#sc_enforce_security_scope_for_service_application_information__section_qhx_1b1_xwb}

{#sc_enforce_security_scope_for_service_application_information__table_ajc_b43_3kb__entry__2}

| Attribute | Description |
|-|-|
| Configuration name | glide.enforce_security_scope.sn_svc_appl_info |
| Configuration type | System Properties (/sys_properties_list.do) |
| Data type | Boolean |
| Recommended value | true |
| Default value | false |
| Category | [Access control](https://servicenow-prod.fluidtopics.net/xAmazkRh5FKyeb7q4TQGWw "The access control category audits the process of protecting resources from unauthorized access through granting and denying requests based on a permission model. This includes ensuring an entity accessing a resource holds valid credentials to do so, creating and protecting a well-defined set of roles or permissions and ensuring role or permission controls are protected from replay and tampering.") |
| Security risk | * Severity score: 4.3 * CVSS score: Medium * Security risk details: If this property is set to the insecure value of false, it can lead to unauthorized access to sensitive data by users who do not have permissions for the Service Application Information data. {#sc_enforce_security_scope_for_service_application_information__ul_g1g_3sf_xwb} |
| Dependencies and prerequisites | The Service Applicant Information plugin (com.sn_svc_appl_info) must be activated for the glide.enforce_security_scope.sn_svc_appl_info property to be effective. |
[ ]

{#sc_enforce_security_scope_for_service_application_information__table_ajc_b43_3kb}

