Users and roles
Creating accounts, roles, scoping and advisor records.
Creating a user
On the Users tab, enter the email address (this is the username), choose a role, optionally set the advisor scope, and set a temporary password. The user must change it at first sign-in.
Roles and scope
Administrator, advisor and read-only. See Signing in for what each can do. Scope limits any non-administrator to one advisor's clients.
Advisor records
Separate from the login, each advisor has a record with name, email, mobile number and Telegram identity. These are the allow-lists: intake is accepted only from a registered number or Telegram account, and email approvals only from a registered address. Drafts are emailed to the advisor's registered address.
Sessions
Each user can see their own sessions and sign out everywhere. Setting a new temporary password for a user signs them out of every session.