HiI have userA who has sysadmin profile and role=Project Manager.Another userB who has role=CEO and some profile.Now userA creates a few records and these are automatically shared with userrB because he has a higher role.Now I want to restrict access to userB to only READ, I want to prevent him from having EDIT/DELETE/SHARING options.Is this possible? Please let me know.ThanksPooja