Each staff member is given a role that controls what they can see and what they can do. Roles cover viewing, creating, approving and administering, and they can differ by area of the product.
Changes are logged
Permission changes are recorded with the person who made them and when. This matters more than people expect the first time there is a disagreement about who changed a limit.
Removing access
Remove access on someone's last working day rather than later. Keep their historical records rather than deleting the user, because those records are part of your audit trail.
Last updated 15 August 2026