- 01Signing in
- Single sign-on with Microsoft 365 and Google Workspace, with MFA available on top of it. Mobile login additionally takes a PIN as well as the password, which is what lets a shared site tablet be used by several people who each sign as themselves rather than staying logged in as whoever set it up.
- 02Surface separation
- Staff use the web portal and the field app. Clients use the client portal. Subcontractors use the subcontractor portal, served by their own controllers with their own template. A URL from one surface, sent or guessed, returns the user to their own dashboard.
- 03Web page permissions
- An explicit tree of the menus and sections a person can open, ticked per person. This is more precise than a role template and it is how the construction deployment is run.
- 04App permissions
- A separate list, set independently of web access. A supervisor can have the full field app and almost no back office at all.
- 05Sensitive flags
- Specific switches on the things that cause trouble: whether a person can see hourly rates, whether they can see other people's timesheets, and whether they can manage anyone else's access.
- 06Priceless documents
- On onsite quotes, site-level roles are served a document with no prices on it at all, so a supervisor can raise and progress a quote without ever seeing what it costs you or what you make on it.
- 07Record-level scoping
- Clients see their own projects. Subcontractors see their own orders and invoices, constrained by the identifier held against their login, which cannot be changed from the browser.
- 08Leavers
- Deactivation is immediate and blocks login, with the reason written to the login log. Every login, failed login and blocked attempt is recorded with the IP address.