Users & roles
Create logins, assign branches, and set permissions — explained for shop administrators.
What is this page?
Users & roles controls who can log in and what they can click — customers, pledges, receipts, settings, etc.
Settings → Organization → Users & roles (/settings/profile/users-and-roles).
What you see on the screen
What you will see on the screen
- All Users — name, contact, Owner badge or branch→role chips.
- User Roles — permission templates (admin + day-to-day ops in one role).
- Add user — Owner checkbox (owners only) or branches × User Role.
- Restrictions — limit how far back staff can post/filter (on the role).
Owner vs staff
- Owner (checkbox /
is_owner) — full access on every branch. Set with the Owner checkbox (only existing owners can grant this). - Owner (User Role template) — also listed under User Roles with the full permission matrix so you can review/edit what “full access” includes; only owners may assign this role when hiring.
- Everyone else — pick associated branches and a User Role per branch (e.g. Manager at one shop, Cashier at another).
Step-by-step: add a staff login
Open Users & roles
Settings → Organization → Users & roles.
Add user
Enter name, email, mobile, status.
Branches and roles
Select the branches this person may work in. For each branch, pick a User Role. Roles can differ per branch.
Save and inform staff
Share login details securely; ask them to change password if your process requires.
Hiring limits (managers / HR)
- You only see branches you are allowed to staff (where your own role includes user management).
- You may assign any role listed in your roles allowed list — even if that role has more day-to-day powers than you.
- You cannot make someone an Owner unless you are an Owner.
Step-by-step: edit a User Role
Open User Roles
Select the role to edit (Owner, Manager, Staff, Cashier, or a custom template).
Critical rights + operations
The dark side menu starts with Critical rights (Admin, Organization, Masters, Tools, Role Assignment), then Operations (pledges, parties, accounting, Restrictions).
Roles allowed
Choose which roles holders of this template may assign when hiring (requires User add/edit under Critical rights).
Save
Users with that role pick up changes on their next action.
Defaults for a new company
New companies start with four User Roles — Owner, Manager, Staff, Cashier — each with their permission matrices preloaded. The person who registers is also flagged is_owner. Existing companies that still miss Owner or show duplicates should run migrateUnifyUserRoles.js.
Tips
| Tip | Why |
|---|---|
| Prefer one login per person | Audit trail and lockouts stay clear |
| Give cashiers a narrow role | Less risk at the counter |
| Keep at least two Owners | Avoids lockout if one account is lost |