User Role - Restrict access to individual bank accounts
To have the ability limit some users to access some bank accounts within Xero org.
Purpose: To limit some staff to not be able to see the information about the client’s bank balance.
Hi everyone, I want to assure you your voice is heard here and feedback is being shared back with our product teams.
We understand the desire to get this idea moving along and as mentioned in our last update we know this is an area that more controls and permissions would be most beneficial to our customers.
We’d like to share progress that we’re making for banking permissions - Work to provide more controls of sensitive banking information has started and will initially include the ability to restrict users from seeing sensitive banking information such as; account balances, bank transactions, and financial summaries.
We know this doesn’t relieve all pain points of this idea - It’ll be the first phase, a stepping stone of sorts in the development of per-bank controls.
As development continues we’ll share further updates as soon as they’re available with you all here.
Thank you for your involvement in Product Ideas and support in this idea.
-
Noel McKenney
commented
It's pretty obvious that Xero's interest in sorting this ongoing critical issue and their care factor in general is absolutely ZERO !!!
PATHETIC !!!! -
Ryan Kent
commented
Each user definitely needs more specific access rights, for example, an invoice only user cannot currently add new tracking options when raising sales invoices which is frustrating. Instead, they have to be a standard user to have full access to tracking, where they will then be able to view the bank account and its transactions, which our client is wanting to avoid. So there is no way around this currently
-
Kosta Court
commented
My client pays staff from a seperate account and would like to keep that account nonaccessible on Xero by the administrative staff whilst allowing them to reconcile the other bank accounts.
-
Jason Ward
commented
Vital feature to be integrated into Xero.
-
Helen Jackson
commented
I agree, we have new look reports forced upon us which are not as useful or quick as the old reports. There's nothing wrong with the old reports anyway. Instead I continue to work Xero that administration staff could be doing.
-
Rebecca Rotheram
commented
Basically Xero are currently spending a lot of time working on the 'look' of the software rather than the functionality. I'm very disappointed that after hiring an accounts admin I can't ask her to post journals otherwise she will have access to a lot of sensitive information. Doing month end accounting journals are part of a low level accountancy role. To have access to a whole host of information just to post a journal seems crazy to me. Yet again another work around needs to be done. She will just have to fill in a template for me to upload. Until xero work on this...
-
Rod Fay
commented
i totally support this concept, i have a number of clients that want this feature and from an audit view it is a great management tool that adds assurance to the internal controls.
Please add your voice to this request so Xero will prioritise it -
GS THOMPSON
commented
Adapt or die. Xero needs to catch up.
-
Alan Oversmith
commented
@Ethan M as you pointed out there are several user access ideas on this site and many of them have been here for a long period of time. Xero doesn't appear to be interested in addressing this issue whatsoever as most of them have basically the same response you've provided here.
For me, it's absolutely amazing the software was ever designed without any basic user access control as literally, every other accounting software provides. Being with a franchise system that will bring hundreds of locations onto the platform, I can confidently say this won't be acceptable and will only be a matter of time before the system decides to move on.
Given the hundreds of related "ideas" posted and likely thousands of "votes" in favor of them, Xero better start listening to their customers or they will become former customers.
-
Maria McAdam
commented
@Jamie Foale QuickBooks allows very granular permissions - you can decide exactly what your roles are and what each role can see. Despite the pain of changing again I'm preparing our business to go back to QuickBooks. Unfortunately Xero is not positioning itself to grow as its clients grow,and we've outgrown it.
-
Jamie Foale
commented
Does anyone know of alternative softwares that have this functionality?
-
Hi
Such a shame that Xero is so flexible and beautiful to use yet Xero does not consider it pertinent or critical that access levels are addressed. This is a serious hindrance; no large business would put up with it, some small to medium sized businesses can't either.
What's the point of having Xero which is meant to make life easier, when because of the blanket way Xero allows users to have access / inability to customise what parts of an organisation's financial information and bank accounts users have access to, it actually causes hours and hours of painful workload being loaded onto some one person because the other individuals should not have access to certain information but we can't make that work in Xero due to current settings.
Appreciate Xero believes focusing on their 'Building on beautiful' work is important but think Xero is missing the point that with the current way security and access settings work it is causing Xero to not be so beautiful for a big load of its customers.
Sadly if this is not addressed urgently, we will be moving ourselves and all other clients away from Xero to another provider which understands the supremacy of security and access settings and the ability for an organisation to determine which of its users get to see/edit which parts of its information.
-
Steve Ziara
commented
If it's not under consideration I will be reconsidering my relationship with Xero.
-
Steve Ziara
commented
Bank Account Restrictions are a must have for any business. A user should be able to access one or two accounts without automatically gaining access to all accounts for the business. This is especially true for a business with multiple locations or a parent company with many businesses under its umbrella but it's just as true for a small business that believes in internal controls and processes.
-
Steve Ziara
commented
I don't understand how folks run a business without restricting access to bank accounts. Do you have a plate glass window without curtains on the streetside wall in your master bath too? Leave something to the imagination people!
-
Tanya Whitehead
commented
Similarly, I do believe restricted access to bank account details is a critical feature and would love to see Xero integrate this
-
Emma Taylor
commented
Once a Petty Cash bank account has been created, it would be beneficial if you could create users who are only permitted to upload transactions and view the balance of this account. This means that admin staff who would be in charge of the petty cash on a day-to-day basis, can keep accurate records of transactions in real time, but have no access to the main bank account or any other acounting information.
-
Lisa Hampton
commented
Similarly to many other businesses, we have credit cards set up as bank accounts with the reconciliations needing to be done by someone with restricted access. The reconciliation process is onerous and time consuming, in particular when you have dozens of cards attached to the feed. Pretty frustrating that Xero doesnt have this capacity in todays climate
-
Helen Jackson
commented
We want the credit cards (treated as bank accounts with a bank feed) to be reconciled by someone with restricted access ie not allowed to see other bank accounts, journals, select reports etc. Unfortunately a standard user can see everything
-
Richard T
commented
Critical! The way user roles are predefined is overly general and really limits its use. Hope the change comes quickly :)