Users should only be able to certify assets if they are a "workspace admin." If technically any user can certify the assets they create, it doesn't actually hold any weight as to what assets are legitimate and what assets aren't. Ideal solution: A...