???
Privacy rules are there so that you entire database isn’t literally exposed to the entire internet.
That user being yourself. Backend workflows are black boxes, you can trigger a workflow (assuming you meet the conditions) but after that you can’t see inside of it or modify it in any way.
Ignoring Privacy Rules is not only recommended in certain cases, but absolutely necessary:
Protecting data with privacy rules | Bubble Docs
This lets you run workflows that perform an important task with full access to data, without compromising your security by opening up the access for the current user. The operation is performed purely server-side, meaning that your users cannot see it or even know that it’s running.
1 Like