User Role - Restrict access to specific Settings
Ability to customise user roles to restrict some access in Xero.
Purpose: Some staff should only have limited access in Xero.
Hi everyone, we appreciate all your feedback on how we could evolve roles for customers using Xero. As you can see through the ideas on the platform, there are a wide range of combinations of permissions our customers want to see us build. As user roles impact all areas of the product, there are many considerations we must factor in when assessing how to solve for majority of our customers needs.
We’re beginning to conduct research on the current landscape and how we might approach some of the most predominant needs in roles for our customers. Front footing this, the discovery of this work will be long winded and there will be multiple phases of research and forms of engagement with users that’ll help shape the path ahead in this space.
We’d like to invite you, our community to be part of this research and discovery. This may involve interviews and sharing further feedback through direct surveys or questionnaires.
✍️ If this is something you’d be interested in taking a part of please fill in our short form here.
Though we won’t be able to invite everyone into every stage, our research team will be in touch with many of you over the coming months.
We will be back to share on the outcomes of our research and any progress around development of roles in Xero.
-
Wei-Loong Chen commented
Hi - I think there needs to be an in-between user level between Invoicing and Standard. For personnel in the sales team, in addition to being able to create and issue invoices, they should be able to generate debtors reports (they don't need to be able to see bank accounts and other financial details). The currrent "all or nothing" user roles don't reflect business reality. Pls Xero - come up with a solution
-
WeeKee Lua commented
This is critical, and I do hope Xero can resolve this urgently. It is understandable and common for sales or purchases staff to access the designated collection/payment bank accounts. But they must not have access to ALL bank accounts which will have inevitably contain confidential and sensitive transactions. Xero have to understand this commercial reality, and creating custom access for different bank accounts is the way to go!
-
Nikki Velinsky commented
Would be really helpful to be able to allocate access to different users, as within the company different employees have different roles and therefore require access levels, to different parts of the accountng system.
-
Hano Du Toit commented
Is Xero staff / management even looking at this product ideas page?
-
Hano Du Toit commented
I have been following these comments the last few months and I cannot understand that Xero developers / management has not responded in anyway regarding this issue. I have raised this issue on numerous occasions during certification webinars but got no proper response, it is if they are talking / dancing around the issue. Honestly, I have started looking again a Sage Cloud as alternative for my clients and seriously considering moving all of them. I just feel Xero is still spending time on creating additional reports, while the needs of their Xero Advisors are not addressed.
-
Rafael Tenorio commented
We need staff to send statements (under sales overview) but not to raise invoices, nor amend the existing ones. We also need them to be able to see the bank transactions but not to reconcile, change, delete, etc. We need to be able to have more specific permission settings.
-
ACME Batteries commented
We have staff who need access to debtors and creditors reports but do not need to access bank accounts. Giving them standard user role lets them have access to everything. There needs to be a way where they can have standard user role but excluding bank account access. Currently we have them on invoice plus creditor roles but this is hindering their work. We need to have a way to restrict bank permissions. It is very disappointing that Xero has not fixed this issue. If you can restrict access for pay roll, why can you not restrict access to bank accounts. This is sensitive information and I am really perplexed that Xero has not addressed this.
-
Sandra Michna commented
Would like the sales team to be able to log company credit card expenses direct into Xero without being able to see all bank balances. Restricted access is the way to go. The existing add on expenses app at an extra cost is not designed for this purpose.
If you can invite employees to access their payroll information only & nothing else why would restricted access be so hard to do for other purposes. -
Ana Luisa Reyes Hermosilla commented
Some information is confidential, so it shouldn't be open to all employees.
-
Stuart Green commented
How is it possible after all the years of zero’s existence this is not possible. All the comments below have the same issue.
My point is what do the owners of xero use for book-keeping as I am sure there MD really doesn’t want Doug in accounts seeing his salary payment because he can access the bank accountSage has this perfectly sorted in permissions how did Xero miss this one? Or many issues
-
Vicki Bishop commented
this is important
-
Cheryl Ward commented
I need an employee to be able to raise/approve sales AND purchase invoices, run the report off by themselves to show what's been raised each day/in the month but not have any access/visibility to bank accounts or bank reports. Today I have been told by support this has not come up and to vote for this idea. There needs to be the ability to choose in each section of the user set up what is require for us as a business.
-
Hyrum Modlik commented
Really need Xero to have more options on user accessibility. I want members of our team to not have access or to see what is the balance is in the business account that you can see on the dashboard or any reconciling. This needs to be sorted ASAP!!!!
-
Lois Kempnich commented
Xero does many things very well, it is disappointing to see how poorly this area has been addressed.
Internal controls and restricting access to invoice creaters is critical.
There is no point in having invoices Approved when the creater can then edit, void, and also apply payments against these invoices.
From an audit perspective the internal controls and segregation of duties concepts in this area are extrenely poor, and require urgent changes to be implemented by Xero. -
David Bluett commented
We have moved all of our GST clients onto Xero ledgers and now find that in order to be able to code their transactions, they must be given access the chart of accounts. Are Xero working on fixing this?
-
Robbie Hamlin commented
Yes we need some staff to be able to see what customers owe and if they have paid their bill but we dont want them to be able to edit the invoice, basically a read only of invoices outstanding.
None of the options at the moment are what we need, under the read only you need to have a tick box for all the areas so we can tick what they can read only.
Thanks -
HTWA Finance commented
Very important as we have staff from different offices being able to add and edit the chart of accounts which is throwing out our consolidated reporting processes and goal of account alignment
-
Tommy Li commented
Segregation of duties of users with multi-staged approval workflow is critical for businesses with multiple offices/regions.
e.g. multiple approver(s) and sequential approval (1st approver --> 2nd/Final approver)
-
John Stretton commented
I have clients who would like me to restrict their own staff's access to the areas they work on - mainly for reasons of confidentiality
-
Robert Symes commented
Causes uss a lot of work from clients that don't know what they are doing when they add or change the chart of accounts