---
title: "Best Practice | Global API Application Security Validation"
slug: "best-practice-global-api-application-security-validation"
updated: 2025-11-17T14:52:45Z
published: 2025-11-17T14:52:45Z
canonical: "developers.cmicglobal.com/best-practice-global-api-application-security-validation"
---

> ## Documentation Index
> Fetch the complete documentation index at: https://developers.cmicglobal.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Best Practice | Global API Application Security Validation

## Introduction:

To ensure the highest level of data compliance, CMiC applies application-level security across all endpoints. This ensures that API responses respect company, job, project, payroll, and employee relevant security rules, protecting sensitive information from unauthorized access.

## Recommendations:

- Verify that your API calls are aligned with your assigned permissions by checking the application security setup for the API service account under CMiC System [User Maintenance.](https://docs.cmicglobal.com/portal/Content/E_Reference_Material/SD_-_System_Data/Reference/Security/User_Maintenance.htm#Company)
- Report any unexpected access errors to your Account Manager or CMiC Support.
