Skip to content
Paybob

System settings

Staff and roles

Give your team accounts and decide exactly what each role can see and do.

Give each member of your team their own account, and decide exactly what they can see and do with roles. You'll find both under System Settings: Staff Management for accounts and Role Management for roles.

Administrators and staff

Every account is one of two types:

Role TypeCan do
AdminEverything, in every Brand. Admins don't need roles or permissions.
StaffOnly what their roles allow, and only in the Brands they're members of.

Some things are for admins only, whatever a role says: managing Brands, the license, uploading themes, creating and editing roles, and creating or changing other admin accounts.

Keep the number of admins small. There must always be at least one: the last admin can't be removed or turned into staff.

Roles

A role is a named set of permissions, such as "Support" or "Accounts". Each staff member gets one role in each Brand they work in.

There are two kinds of role:

Brand roleInstallation-level role
ScopeThis brandInstallation-wide
GrantsPermissions for the Brand's own pages: transactions, customers, invoices, gateways, settings and so onPermissions for the shared, installation-wide pages only: Devices, SMS Filter, SMS Data, Balance Verification, Keyword Filter, Currency, Cron Job, URL and Path, System Update
A staff member hasOne per Brand they belong toAt most one

So a staff member who handles SMS for every Brand gets an installation-level role, while their permissions inside each Brand come from that Brand's role.

Create a role

Only admins can create and edit roles.

Start a role

Open System Settings → Role Management in the Brand the role is for, and click New Role.

Name it and pick its scope

Enter a Role Name and choose the Scope: This brand or Installation-wide. Names must be unique within a Brand; two Brands can each have their own "Support" role.

Choose permissions

Permissions are grouped on three tabs:

  • Resources: the panel's pages and actions, such as Transactions (View, Approve, Refund, Send IPN, Update, Delete) or Customers (View, Create, Update, Block, Unblock, Delete).
  • Widgets: the parts of the dashboard.
  • Addons: permissions added by installed addons.

Tick what the role should allow. Each group can be ticked all at once.

A user only sees pages and buttons their role allows. Anything else is hidden, not shown greyed out.

Remove a role

A role that's still assigned to someone can't be removed: reassign them first. When you remove several roles at once, those still in use are skipped.

Staff accounts

Open System Settings → Staff Management. The list shows the current Brand's staff and every admin, with their Role Type, Role in this Brand, Installation-level role, and the other Brands they work in (shown to admins only).

Add someone

Click New Staff and enter their Name, Email and Password, choose Role Type, and for staff, their Role in this Brand and optionally an Installation-level role. The new staff member becomes a member of the current Brand.

Share the password with them securely, and ask them to change it and turn on two-factor authentication from their profile.

Add them to another Brand

A staff member who already has an account can work in more Brands. Switch to the other Brand, open Staff Management, click Add existing staff (admins only), pick the Staff account and give them a Role there.

Change or remove access

ActionWhat it does
EditChange their details, role type or role in this Brand.
Remove from brandTake away their access to this Brand only. Their account and other Brands are kept.
Delete accountDelete the account entirely, from every Brand.

Nobody can remove or delete their own account.

Shared accounts are protected

A staff member's name, email and password are the same in every Brand they work in. So unless you're an admin, you can only change those details, or delete the account, if the person works in no other Brand. You can still change their role in your Brand or remove them from it.

Addon permissions

Addons can add their own permissions, which appear on the Addons tab of the role form. When an addon is updated with new permissions, they aren't given to any existing role automatically: tick them on the roles that should have them.

Permissions for these pages

Staff Management and Role Management each have their own View, Create, Update and Delete permissions. Creating and editing roles also always requires an admin.