COF-C03 Data Collaboration Practice Question
A Snowflake provider wants to share a secure view with a consumer. The view is defined on a table in a different database than the one containing the view, and the provider must ensure the consumer cannot access the underlying base table directly. Which action should the provider take?
⚠ Common exam trap
The trap here is assuming that the base table's database must also be shared so the view can access it, but secure views execute with the owner's rights and do not require the consumer to have access to the base objects.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Grant USAGE on the database and schema containing the secure view, and SELECT on the secure view, to the share.
When sharing a secure view that references objects in other databases, the provider must grant USAGE on the database and schema that contain the view, and SELECT on the view, to the share. The base table's database is not shared, and the secure view's owner's rights allow access to the base table without exposing it to the consumer.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✓
Grant USAGE on the database and schema containing the secure view, and SELECT on the secure view, to the share.
Why this is correct
To share a secure view, the provider must grant USAGE on the database and schema that contain the view, and SELECT on the view itself to the share. The base table's database does not need to be shared because the secure view runs with the owner's rights, and the consumer only needs access to the view. This keeps the base table private.
- ✗
Grant USAGE on the database containing the base table to the share.
Why it's wrong here
Granting USAGE on the base table's database to the share would expose the database to the consumer, but it does not grant SELECT on the base table. However, this is not the correct approach because the provider should not grant any privileges on the base table's database; only the secure view's database needs to be shared. This action unnecessarily exposes metadata and could confuse the consumer.
- ✗
Add the base table to the share and rely on the secure view to restrict access.
Why it's wrong here
Adding the base table to the share would grant the consumer direct access to the base table, defeating the purpose of the secure view. Secure views are designed to hide the underlying data and logic; sharing the base table would expose all rows and columns, violating the security requirement. Only the secure view should be added to the share.
- ✗
Create a new role with access to the base table and grant that role to the share.
Why it's wrong here
Roles cannot be granted to a share; only privileges on objects can be granted. A share is a container for grants, not a role recipient. Creating a role and attempting to grant it to a share is not supported in Snowflake. The correct method is to grant the necessary privileges directly to the share.
About these practice questions
Courseiva writes every COF-C03 question from scratch — 280 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official Snowflake exam blueprint
This COF-C03 practice question is part of Courseiva's free Snowflake certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the COF-C03 exam.