There was a time when my primary concern on something like this would be simple worries about whether or not the junior (or senior, or mid-range) developer should be on production in the first place because of dropped tables, etc.. However, the more I know about privacy and compliance from HIPAA, PCI, GDPR, CPPA, FERPA, WPA, and SOX, the more I'm very comfortable in denying that access based purely on business needs. The whole technical aspect of the problem, which has always been a concern of mine, is completely subsumed by the compliance issues.
NO. You don't get access to production and the business is going to back me up on it (probably, at least after they get their first GDPR fine).