Inheritance
When a user asks Hugo to look something up in Lucernex, SharePoint, email, or another connected system, Surfaice acts with that user’s existing entitlements. If the user could not open a file or record outside Surfaice, they should not see it through Surfaice.What Hugo can access (by connector)
Permissions are always evaluated at request time under the signed-in user’s account.
Your workspace may enable only a subset of these connectors.
Role gates inside Surfaice
Separately from source-system ACLs, Surfaice roles control:- Who is invited to the workspace
- Which connectors a role may use at all
- Which skills are offered
Email specifics
- Mailbox connections are user-granted to that user’s mailbox
- There is no tenant-wide mailbox read
- Instance-wide exclusion lists (keywords, senders, domains, folders) can block sensitive topics across skills