Roles, access and permissions
People see the work they are entitled to, and nothing else.
Access is granted by role, and roles are yours to define. Every request is checked at the door rather than inside the page, so a new screen cannot accidentally arrive without its protection.
How it works
- Permissions apply at three levels: what someone can do, which records they can reach, and which fields they can read or change
- Study, site and business-group scoping keep teams to the material that is theirs
- A refusal names the permission that was needed, so nobody guesses
- Actions with real consequence are permissioned individually and audited separately
- Current roles, what they carry, and last sign-in are reportable for periodic access review
Sign-in uses your own identity provider. The system stores no passwords and issues no credentials of its own.
See it in a working system.
We will walk a live workflow and show this capability behind the steps it governs.