We are using the latest version of the Splunk Add-On for Salesforce. The integration account we are using on the Salesforce side is setup with the System Administrator profile, which is working fine, but because of the elevated access, we don't want to use that. We have a more limited profile that seems to have all the correct permissions, but when we look at the Event Log data that comes over, it only contains events for the integration account, and no other users. I've compared the profiles and the only difference I see is that Sys Admin has access to all objects. Not sure why that would matter though. Any ideas on what permission we might be missing?