USERS & ACCESS
Granular by default. Flexible by design.
Role templates establish sane defaults. Owners can then grant or deny individual permissions at organization or location scope.
Business owner 2Regional manager 3Manager 7Inventory / compliance 12Lead 18Employee 42
ACCESS MATRIX
Overrides win at the more specific scopeBusiness owner defaults
| Capability | Owner | Regional | Manager | Compliance | Lead | Employee |
|---|---|---|---|---|---|---|
| All locations | ✓ | Assigned | Assigned | Assigned | Assigned | Assigned |
| COA approve | ✓ | ✓ | ✓ | ✓ | — | — |
| Generate QR | ✓ | ✓ | ✓ | ✓ | ✓ | — |
| View analytics | ✓ | ✓ | ✓ | ✓ | Limited | Limited |
| Assign training | ✓ | ✓ | ✓ | — | ✓ | — |
| Manage integrations | ✓ | — | — | — | — | — |
| Manage users | ✓ | ✓ | ✓ | — | — | — |
USER OVERRIDE
Any employee can be expanded
Need one employee to administer QR across three assigned stores? Grant only those permissions at those locations. No need to promote the account into a broader role.
Jordan Lee · Employee+ QR.manage · Salinas+ analytics.view · Salinas− users.manage · all
PLATFORM REALMS
Separate account domains
NexlabsSite owner + platform staff
BusinessRetail organizations + locations
BrandClaimed brands + brand teams
