Settings and activity
3 results found
-
730 votes
Hi community, we appreciate your continued feedback on having different default email addresses for various transaction types in Xero contacts, and the manual steps involved to ensure you're communicating with the right person for different purposes.
Currently, one way of managing this in Xero would be to include every additional person on a contact record in emails, and then removing those that aren't required when sending each transaction. However we totally get this isn't the ideal solution.
While being able to set different email addresses for differing transaction types is something we want to address longer term, like the idea for multiple addresses work for this feature requires cross-collaboration between teams in order to achieve.
Once the multiple addresses feature is live this is something we'll be able to consider more closely and provide further updates on.
We do regularly review all ideas here, and your input is vital. We'll…
Brian Walmsley
supported this idea
·
-
872 votes
Hi everyone, our product teams are continuously reviewing and reprioritising their roadmaps for future work and although we don’t have any plans to change the credit application process this year, this is something we will investigate more closely in 2026.
As we begin to explore work for enabling credit notes in the bill payments flow, we’ll reach out for input to help us shape the design and approach so we cater for the widest possible requirements. Thank you all, and we’ll be back to share when exploration starts.
An error occurred while saving the comment
Brian Walmsley
supported this idea
·
-
1,081 votes
Hi everyone, we appreciate the interest surrounding this idea, however we want to be open that we're unable to extend our log-out time past 60 minutes. Xero hold a lot of sensitive information including bank data and we're required to be as secure as online banking.
Any session information running on a web browser can potentially be stolen. If the session does not time out. You then have an infinitely long vulnerability window to session hijacking. Our best option is to keep a tight expiration window on the session cookie, and regenerate them frequently. Even setting a long timeout doesn't help with this - too long a timeout will greatly increase the risk of invasion or potentially jeopardise your personal data and the safety and integrity of the Xero application itself. This is why we maintain control of this.
If we detect there's been no activity on a page (e.g…
Brian Walmsley
supported this idea
·
I've read several comments on this from other users - I concur