Users & Permissions
Access control in MahirRMS has three layers, and confusing them is the root of most "why can/can't this person do X" questions:
- Module enablement — what the business has switched on. A module that's off for the business exists for nobody.
- Permissions — what a role may open and do. A cashier's role doesn't include accounting reports, so cashiers never see them.
- Authorizations — what a person may do alone. Applying a big discount is permitted at the POS, but the branch may demand a second person signs it.
In this section
- Adding Users — one form creates the whole person: login, role, position, branch and employment details.
- Roles & Permissions — the ready-made roles a new business gets, and how to shape your own.
- Authorizations — the signature system that guards money-moving actions.
The one-sentence security policy that works: give people the smallest role that lets them do their job, and put every action that moves money behind either a permission they lack or a signature they must request.