Configure permissions and page access
Control which staff can use sensitive pages such as setup, pricing, reports, audit, staff, security, and menu management.
The branch has clear page access rules that match staff roles and reduce accidental changes.
Before you start
- Create staff accounts first.
- Decide which staff are cashiers, supervisors, admins, and owners.
- Use an owner/admin account to review permissions.
Identify sensitive pages
Some pages can affect money, security, reporting, or branch structure. Keep these limited to trusted roles.
- Limit pricing, permissions, staff, security, backups, and menu management.
- Limit reports and audit logs to supervisors or owners when needed.
- Keep daily cashier pages available to staff who need them.
Grant access by job
Permissions should follow jobs, not personalities. A user should receive access because their role needs it.
- Create a simple access pattern for each role.
- Avoid giving owner-level access to solve one missing page.
- Review access after staff changes.
Test with real staff accounts
After permission changes, test with the same kind of account staff will use during a shift.
- Confirm the staff member can open required pages.
- Confirm blocked pages show a clear access state.
- Check the sidebar after menu changes.
Verify it worked
- Cashiers can complete daily work without opening owner-only pages.
- Supervisors can access required reports and support pages.
- Owner/admin access is retained for recovery and setup.
Troubleshooting
A user can see a page but cannot complete an action.
Check permission scope and page-specific access, not only sidebar visibility.
A user cannot see a page they are allowed to use.
Check menu management as well as permissions.