Masking precedence: Masking Exemption > Global Masking Rule > Column Masking.
- Built-in roles:
Workspace Admin,DBA,Project Owner. - Custom roles:
bb.policies.createMaskingExemptionPolicy,bb.policies.updateMaskingExemptionPolicy,bb.policies.deleteMaskingExemptionPolicy.
- Go to the project, click Data Access > Masking Exemptions.
- Click Grant Exemption.
- Under Resources, choose All databases, Use CEL Expression, or Manually select, and optionally set an expiration.
- Select the accounts, and click Confirm.
Masking exemption is not supported for document databases (MongoDB and Elasticsearch). See Document Database Masking.

