Privilages need to create a custom role to call the REST API invoiceapprovalsandnotificationshistory
Our audit team needs to access the Invoice Approvals and Notifications History REST API, specifically at the endpoint /fscmRestApi/resources/11.13.18.05/invoiceApprovalsAndNotificationsHistory. We have found that the standard roles such as "Accounts Payable Supervisor Role" and "Accounts Payables Manager" do provide the necessary permissions to call this API. However, these roles also grant a broader range of access than is necessary for our audit team’s purposes, which could pose potential security or compliance concerns. To address this, we are analyzing the underlying privileges associated with these seeded roles in order to identify the minimum set of permissions required to use the API solely