Roles and permissions across business and service work

Give each team the access it needs to work. Manage everyday business permissions separately from administrative controls.

Allowed business tasks and a denied admin action

Give each team the access it needs to work. Manage everyday business permissions separately from administrative controls.

Allowed business tasks and a denied admin action
Workflow stepWhat you can see
Sales/CRM capture roleAllowed: inspect customer, edit owned opportunity stage and add internal reason
Stock capture roleAllowed: inspect stock task and validate six with a four-unit backorder
Administrative server actionDenied: Administrator-only action. The permitted dashboard receipt route remains usable

Actual change with actor, time and reason

On 3 October 2026 at 03:30 Baghdad, the team member changed New→Qualified. The separate internal reason says identity and 20,000 IQD scope were checked, and delivery date remains open. Both entries retain the same actor and visible time.

3 · The owner chooses the exception

The ordinary capture user validates six and chooses Create Backorder in the native dialog. The system does not silently treat the remaining four as delivered. Cancellation is a different decision and was not selected.

A real denied administrative action

Role-based access keeps business tasks and administrator actions separate. Configure roles around the responsibilities of your team.

Choose which optional services you allow. You can change or withdraw your choices at any time.