I am concerned about the ability to bulk update work items within query results, by selecting the result set, right-click, select “Edit selected work item(s)…”, specify fields and change their value.
This is not an Advanced or even Basic feature. This can also be done with Stakeholder access level.
My concern is that someone could run a query returning thousands of resulting work items, select all and bulk update certain fields on them. This is very easy to do, so could be done by anyone including Stakeholders who may not have a lot of expertise. ie, if you select a field (such as Description) and hit enter, the field is simply and too easily set to "". Sure, they need to click on the save button, but this is not much of a safety mechanism.
I understand work items are not deleted and full history of changes are retained, but how would you revert back thousands of changed work items? Would this be an individual change per work item, checking history of each and manually changing back?
I don't claim to be a TFS ALM expert, so am reaching out to other experts, to see if this is a concern elsewhere or if people put measures in place to mitigate. Many thanks.