In development — usable.software is not live yet.
Usable.softwareA Balane Tech system
All modules/System coreM55
M55Core· System core

Roles & permissions

This is where you decide, as a matrix, which role may do what — across every activated area. Create new roles or copy them from an existing one.

What you do here

Each row is a permission (e.g. 'edit vehicles'), each column a role. Clicking a cell grants or revokes the permission for that role — immediately and server-side. Permissions come automatically from every activated area: add an area and its permissions show up here by themselves. Above the matrix you can see how many people belong to each role — so you know who a change affects.

Create, copy, rename, delete roles

New role: create an empty one or — the fastest way — copy it from an existing role (it takes over that role's permissions, which you then adjust). Renaming only changes the display name; the granted permissions and the assigned people stay. Deleting is only possible for your own roles — the three system roles (Administrator, Manager, Member) are protected. If people are still assigned to a role, you move them to another role when deleting it.

Full access

'Manage' (full access) already includes viewing, creating, editing and deleting an area — a role that has 'manage' does not need the individual permissions ticked as well. Administrator can always do everything and cannot be locked out; that column is locked accordingly.

Data protection & audit

Who may access what is a data-protection measure (access control under GDPR Art. 32). Cut access as tightly as possible — each role only to what it needs for its work (need-to-know), especially for sensitive areas such as HR or care. Only administrators can see this area; every permission change is recorded in the audit log.