User Role - Restrict access to individual bank accounts
To have the ability limit some users to access some bank accounts within Xero org.
Purpose: To limit some staff to not be able to see the information about the client’s bank balance.
We appreciate everyone that's contributed here. Needs in more incremental permissions for bank accounts, have been clearly highlighted in your feedback - from protecting the confidentiality of payroll information to securely delegating reconciliation tasks for specific accounts.
Leaning in from our last update, our product teams have conducted lots of research of existing user roles, to highlight the most critical areas work is needed to power up our customers use of Xero.
Reporting and inventory are our first areas of priority, and you may have seen recent updates across ideas for these areas.
Permissions to bank accounts is another area that stood out in our research, but has more dependencies and will take longer to develop.
We'll keep you updated as our journey with roles and permissions evolve and there's more in the space of banking to share with you all.
-
Clare Dance
commented
I'm surprised that turning off bank visability for certain users isn't a priority function to introduce.
Admin staff, raising a PO should not be able to see the bank balance.
-
Lily Yu
commented
Limiting access to specific bank accounts and reports is critical!
-
GS THOMPSON
commented
2 years later.
Still no option to limit sensitive data.
I Echo Sam Mar's statement.
-
Sam Mar
commented
To manage our company account I have junior employees that need to check if customers paid but should not be able to see the balance in the bank account. Another department makes sure that bank payments are allocated.
I would appreciate more granular setting options. I came from Sage and with Xero at double the price I expected to find this as a standard function
-
Richard Oldnall
commented
User permission settings on Xero are pathetic. It's a major weakness of the platform. The ability to fully customize settings for users must be a priority.
Our company will switch back to Sage (which has this functionality) if not addressed soon.
-
Lee Horrocks
commented
Yes this is definitely something that needs to be done asap. Its an important feature for a lot of small to medium size businesses
-
Nadine Clay
commented
Why is this not a priority?
Would Xero management like their employees seeing their bank balances??????????? -
Kylie Watkin
commented
I agree with all of these comments. It should be a very basic feature that you can separate who can view which bank accounts as users on Xero.
-
Kari Esplin
commented
Please Xero, this post is from 2013. Surely you can develop a user that has access to aspects of the accounts without being able to see bank accounts and produce financial reports. So many small businesses use Xero and critically they don't want all staff to be able to see their private financials. Please prioritise this. I feel the other upgrades you've done like attaching files to invoices and changing the word, 'send' to 'email' are a lot less critical.
-
angela stratford
commented
Xero, this really is a rather easy and crucial requirement for any medium size business, please advise on when this will be done
-
Zane Van Winkle
commented
Any user with the 'Standard User Role' AKA the role with the least amount of permissions that can still access and perform bank reconciliation, has access to Setting>Check Styles which contains your bank account routing & account number, if you need to have that information printed onto blank check stock. This is a major security overlook. I do not want my employee that is helping with bank reconciliation to have access to my bank account information.
-
Jason Heffernan
commented
Xero enough time has passed since this was first raised. it's very simple, allow me to have a user that can pay wages/access employee data, create invoices, but not access my businesses bank account balances.
-
Adrian Holmes
commented
For example, be able to add a user that can access and reconcile debit card accounts and the petty cash account, without having access to the current account. Therefore, the user wouldn't be able to access the bank balance or salary payments etc.
-
Megan Ruder
commented
I agree with all of these comments. It should be a very basic feature that you can separate who can view which bank accounts as users on Xero. That is information that not everyone should have access to. Please work on this ASAP.
-
Claudine Gitton
commented
Good morning,
It looks like we are so many to be requesting this feature that the question should not be asked anymore. This is an import issue within most companies where some team members MUST NOT have access to certain bank accounts. Could you please work on the matter so the admin can choose who can have access to what. Thank you very much for taking this matter seriously.
-
Stacey Quinn
commented
I don't know how many times I have requested this from Xero since its inception.
This shouldn't be determined by a few likes on a product idea page that no one really looks like, this is just VERY BASIC separation of duties and good governance that any piece of accounting software should have been in built from the start. I'd suggest Xero just do it. -
Lee Chadwick
commented
Hey Xero this seems a critical requirement. I have someone assigned to chase debt that only needs access to one account for monies in and out
They should not be seeing the other accounts. we have just moved over from another accounts system where this option was available
The option is available at the moment for each person to manage their dashboard and toggle each bank account on or off their view so it seems majority of the work has been done - just needs the admin to set this rather than each person
-
kathryn preston
commented
Please provide an update on this issue. Limiting access to sensitive information such as bank accounts should be a priority......have been waiting for years
-
Admin (Cyndell) Harrison
commented
As per below comments, there are some tasks that I could be assigning to other team members but are unable to do so as they don't need access to all account information.
An update on the ability to restrict account access to users would be greatly appreciated.
-
Rebecca Rotheram
commented
Any more updates on this please XERO? I continue to do admin tasks that I should be able to give to our admin staff to do but I can't without giving them full access to sensitive company information - its crazy how this isn't a priority.