---
sourceDocument: Xanadu Employee Service Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/xanadu/employee-service-management

 Release :

    - xanadu

ft:locale :

    - en-US

ft:publication_title :

    - Xanadu Employee Service Management

ft:clusterId :

    - emplsm

bundleId :

    - emplsm

workflow :

    - Employee


---

# HR Service Delivery case restrictions for an Employee Relations agent

# HR Service Delivery case restrictions for an Employee Relations agent {#ariaid-title1}

* Release version: Xanadu
* 
* Updated August 1, 2024
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

Even Employee Relations agents with special privileges to view and modify a case are
limited from viewing, modifying or restricting a case under certain circumstances for security
purposes.

An Employee Relations agent is treated as a normal employee and does not have any kind of
special privileges if the agent meets one of the following criteria:  
* The person for whom the case was opened.
* An involved party in a case.
* A subject person.
{#hr-case-restriction-er-agent__ul_bdb_xtz_csb}

Restrictions are enabled for the Employee Relations agent in the following areas of the ServiceNow instance:

## UI actions {#hr-case-restriction-er-agent__section_u3f_qzy_nsb}

Actions such as Update, Ready for Work, and Cancel that are available to regular employees are
also available to the agent. Actions such as Associate Interaction, Delete, Close Complete,
Close Incomplete, and Suspend are not available.

## View {#hr-case-restriction-er-agent__section_vwf_rzy_nsb}

Can view only the restricted self-service view of the case on the Agent Workspace, the platform view, and the Employee Center. The agent cannot change the view.

## Access to related lists and records {#hr-case-restriction-er-agent__section_glf_szy_nsb}

No access to the related lists and related records for a case, for example, allegations,
involved parties, interviews, evidence, and so on. The agent cannot access the related records
in the platform view.

## Access to tasks {#hr-case-restriction-er-agent__section_f42_tzy_nsb}

Can view only the tasks assigned to them and not tasks assigned to other employees.

## Case restriction configuration {#hr-case-restriction-er-agent__section_ogh_5zy_nsb}

Case restriction configuration enables the HR confidential group members to restrict a case
using the Restrict button available on the case.

Restricting a case means that even if an Employee Relations agent is part of the HR
confidential group and is involved in a case, the agent will not have access to that case. For
more information on case restriction, see [Configure an employee relations case restriction](https://servicenow-prod.fluidtopics.net/if7anUUveRswKartiAYQVg "Define what groups can view or access employee relations cases using Case Restriction Configuration.").

## Security Configuration {#hr-case-restriction-er-agent__section_ivs_vzy_nsb}

For Employee Relations COE (Center of Excellence), the HR matching rules skip any Employee
Relations agent who meets the criteria so that the case is not assigned to them. For more
information, see [Create a COE security policy](https://servicenow-prod.fluidtopics.net/1qJYXncz7Y1kHRVCp7ynrw "Use COE Security Configuration to define group restrictions for a COE and for all or specific HR services under it.").

COE security policies are a way to easily restrict access to different COEs via configuration. The underlying COE security policy implementations are [ServiceNow ACLs](https://www.servicenow.com/docs/access?context=access-control-rules&version=xanadu&pubname=xanadu-platform-security&ft:locale=en-US).

