User Role - Restrict access to individual bank accounts
To have the ability limit some users to access some bank accounts within Xero org.
Purpose: To limit some staff to not be able to see the information about the client’s bank balance.
Hi everyone, I want to assure you your voice is heard here and feedback is being shared back with our product teams.
We understand the desire to get this idea moving along and as mentioned in our last update we know this is an area that more controls and permissions would be most beneficial to our customers.
We’d like to share progress that we’re making for banking permissions - Work to provide more controls of sensitive banking information has started and will initially include the ability to restrict users from seeing sensitive banking information such as; account balances, bank transactions, and financial summaries.
We know this doesn’t relieve all pain points of this idea - It’ll be the first phase, a stepping stone of sorts in the development of per-bank controls.
As development continues we’ll share further updates as soon as they’re available with you all here.
Thank you for your involvement in Product Ideas and support in this idea.
-
Sam Mar
commented
To manage our company account I have junior employees that need to check if customers paid but should not be able to see the balance in the bank account. Another department makes sure that bank payments are allocated.
I would appreciate more granular setting options. I came from Sage and with Xero at double the price I expected to find this as a standard function
-
Richard Oldnall
commented
User permission settings on Xero are pathetic. It's a major weakness of the platform. The ability to fully customize settings for users must be a priority.
Our company will switch back to Sage (which has this functionality) if not addressed soon.
-
Lee Horrocks
commented
Yes this is definitely something that needs to be done asap. Its an important feature for a lot of small to medium size businesses
-
Nadine Clay
commented
Why is this not a priority?
Would Xero management like their employees seeing their bank balances??????????? -
Kylie Watkin
commented
I agree with all of these comments. It should be a very basic feature that you can separate who can view which bank accounts as users on Xero.
-
Kari Esplin
commented
Please Xero, this post is from 2013. Surely you can develop a user that has access to aspects of the accounts without being able to see bank accounts and produce financial reports. So many small businesses use Xero and critically they don't want all staff to be able to see their private financials. Please prioritise this. I feel the other upgrades you've done like attaching files to invoices and changing the word, 'send' to 'email' are a lot less critical.
-
angela stratford
commented
Xero, this really is a rather easy and crucial requirement for any medium size business, please advise on when this will be done
-
Zane Van Winkle
commented
Any user with the 'Standard User Role' AKA the role with the least amount of permissions that can still access and perform bank reconciliation, has access to Setting>Check Styles which contains your bank account routing & account number, if you need to have that information printed onto blank check stock. This is a major security overlook. I do not want my employee that is helping with bank reconciliation to have access to my bank account information.
-
Jason Heffernan
commented
Xero enough time has passed since this was first raised. it's very simple, allow me to have a user that can pay wages/access employee data, create invoices, but not access my businesses bank account balances.
-
Adrian Holmes
commented
For example, be able to add a user that can access and reconcile debit card accounts and the petty cash account, without having access to the current account. Therefore, the user wouldn't be able to access the bank balance or salary payments etc.
-
Megan Ruder
commented
I agree with all of these comments. It should be a very basic feature that you can separate who can view which bank accounts as users on Xero. That is information that not everyone should have access to. Please work on this ASAP.
-
Claudine Gitton
commented
Good morning,
It looks like we are so many to be requesting this feature that the question should not be asked anymore. This is an import issue within most companies where some team members MUST NOT have access to certain bank accounts. Could you please work on the matter so the admin can choose who can have access to what. Thank you very much for taking this matter seriously.
-
Stacey Quinn
commented
I don't know how many times I have requested this from Xero since its inception.
This shouldn't be determined by a few likes on a product idea page that no one really looks like, this is just VERY BASIC separation of duties and good governance that any piece of accounting software should have been in built from the start. I'd suggest Xero just do it. -
Lee Chadwick
commented
Hey Xero this seems a critical requirement. I have someone assigned to chase debt that only needs access to one account for monies in and out
They should not be seeing the other accounts. we have just moved over from another accounts system where this option was available
The option is available at the moment for each person to manage their dashboard and toggle each bank account on or off their view so it seems majority of the work has been done - just needs the admin to set this rather than each person
-
kathryn preston
commented
Please provide an update on this issue. Limiting access to sensitive information such as bank accounts should be a priority......have been waiting for years
-
Admin (Cyndell) Harrison
commented
As per below comments, there are some tasks that I could be assigning to other team members but are unable to do so as they don't need access to all account information.
An update on the ability to restrict account access to users would be greatly appreciated.
-
Rebecca Rotheram
commented
Any more updates on this please XERO? I continue to do admin tasks that I should be able to give to our admin staff to do but I can't without giving them full access to sensitive company information - its crazy how this isn't a priority.
-
Claudine Gitton
commented
Hi There,
To me, it is essential for Xero to work on restricting some users on certain bank accounts. Could you please make it as a MAJOR priority as this is a real GDPR issue which has already caused problems within the employees in my company. Thank you for taking this seriously. -
Heidi Westraadt
commented
Provide a Petty Cash User Role- Allow a distinction to be made between what financial data Xero users can access beyond the standard user roles. There is a need to allow a receptionist/ junior staff member to manage petty cash on Xero.
One would like to select a single bank account eg Petty Cash Account and allow the user access to only that account and not the other company bank accounts to thus to prevent the user seeing sensitive financial information (ie salary entries paid from bank accounts) .Xero access is very user unfriendly. This is frustrating as processing work could be delegated to junior staff but now has to be captured by senior staff that do have access to bank accounts.
-
Jane Skinner
commented
Is there any update on this critical function yet?
Surely Xero must be breaking GDPR rules by not having the option to restrict access to some areas for some users?
"Building on beautiful" should NOT be taking priority over GDPR compliance.Xero, please push this to the top of the queue as it really is imperative for any organisation other than a Sole trader.