Description
SoftLedger allows users to create custom roles with fine-grained permissions to manage user access control. Each role has a set of permissions that define what actions the role grants access to. There is no limit to the number of custom roles that can be created. Roles must have a unique name but the permissions can overlap with other roles.
Create and Manage Roles
Add a new Role to be accessible for all users under User>Admin: Roles and clicking +New.
The form for a new Role has the following inputs:
Role Name
Must be unique across this tenant.
Must be between 1 and 255 characters.
Must not equal default role names.
Permissions
At least one permission must be selected.
Within the new Role form, you can select ALL permissions, type to search to find a permission, or click NONE to remove all permission selections.
View, Edit, or Delete Roles
Once the Role has been created, you can find the Role within the Roles table (as per image below). Click the chevron at left to drop down the Role to see permissions allowed, or click the action menu at right to edit or delete the Role.
Add a Role to a User
Once a Custom Role has been created, you can then see the Role as available to be added to a User under the Roles selection for each user, available from the action menu on the Users table (see image below).
Once clicked into the Roles menu, add or remove Roles as desired (both Custom and Default Roles):
Example Custom Role
As an example, let's say your organization requires a User that solely prepares Purchase Orders, but can not approve/delete them, along with accessing other parts of the system.
Step 1: Navigate to Roles and click +New
Step 2: Find Permissions for Desired Role
Step 3: Review the Permissions in the Roles Table
Step 4: Add the Role as the only Role for that User
Example: Creating a View-Only Role
A common use for Custom Roles is a View-Only user — someone who can see everything but change nothing. This works well for auditors, executives, board members, lenders, or an external accountant who needs to review your books without the ability to create, edit, approve, or delete anything.
To build it, create a new Role (Admin > Users: Roles > +New), name it something like "View Only," and select the permissions below. The role uses only list: permissions (see the records in each table), view: permissions (run the read-only reports), and Analytics — no create, update, approve, post, or delete permissions are included, so a user with only this role cannot modify any data.
Tables (list access):
Permission |
list:AuditLogs list:BankAccounts list:Bills list:CashReceipts list:CostCenters list:Customers list:Invoices list:Items list:Jobs list:LedgerAccounts list:Locations list:Overheads list:Payments list:Productions list:Products list:PurchaseOrders list:SalesOrders list:Settings list:Users list:Vendors list:Warehouses |
Reports (view access):
Permission |
view:APAging view:ARAging view:Financials view:GeneralLedger view:JournalReport view:Ledgers view:Profile |
Additionally, if you are an Analytics user, you can add the full:Analytics permission.







