ADPP
Hello, we've just adopted ADPP, but it can make critical issues on our job. So we would like to suggest some improvements. Please refer to details as follows.
■ Personal Identification Information Handling Standards in the Republic of Korea
1. Personal identification information must be masked on the customer “list” screen.
2. Displaying personal identification information on each customer’s detail screen is permissible.
3. Masking must be applied to all internal users of the SaaS service.
■ ADPP Functionality
1. For all internal users belonging to the designated role, personal identification information is masked across all menus.
2. Personal identification information is fully masked on each customer’s detail screen.
3. Administrators cannot apply masking.
4. When masking is active, the entire data set becomes unreadable.
■ Anticipated Impact of Implementation
- Customer identification cannot be verified, preventing secondary hand‑offs, sales coordination, and related activities.
- Ticket requestor cannot be changed; user lookup is disabled.
- Macro operations cannot reference the requestor’s name via expressions.
- Full masking eliminates any possibility of inference or guesswork.
- Administrators’ inability to apply masking blocks the removal of Samsung SDS restrictions.
■ Improvement Requests
- Apply masking only on the user‑list screen; do not mask on detail screens.
- Enable search functionality even when data is masked.
- Allow masking for all internal users.
- Implement a masking pattern that replaces every 2–3 characters with asterisks (*) to preserve partial readability.