Roles and permissions
Access shaped like your company, not like a checkbox list
Build the org chart once and permissions follow it. Move a crew and what they can see moves too.
Most business software gives you four or five fixed roles and a page of checkboxes. It works until you have two locations, or a part-timer who should see one thing, or a crew lead who needs their crew and nothing else. Then you start giving people more access than they should have, because the alternative is an afternoon of configuration nobody has.
The fix is to stop describing access separately from the company. Build the structure you actually have — and permission becomes a consequence of where somebody sits rather than a list somebody maintains.
What that gives you
Your org chart is the permission model
Company, divisions, departments, teams and crews — with people placed where they actually work. A crew lead sees their crew. A regional manager sees their region. Nobody maintains a parallel list of who-can-see-what that drifts from reality within a month.
Reorganize without re-permissioning
Move a team to a different part of the business and its access moves with it. Restructures are a fact of growing companies, and they should not mean an afternoon of re-ticking boxes and a week of quiet mistakes.
Call roles what your industry calls them
Rename any role to your own word — techs, stylists, crew, reps, coordinators. Software that insists your people are something they are not is software your team works around rather than with.
Every change is on the record
Who was given what, and when. The question after something goes wrong is always "who could see this?", and it deserves an answer rather than a discussion.
The situations this is actually for
“A crew member should see their own jobs, not the whole schedule”
They are assigned to their crew, and that is what they get. No custom view to build, no report to lock down afterwards.
“A part-time bookkeeper needs the books and nothing else”
A role scoped to what they came for. This is exactly the person nobody gives a login to when seats cost money — which is why seats here are free.
“A branch manager should not see the other branch”
They are placed at their branch. Separation is where they sit, not a filter someone remembered to apply.
“An agency runs several businesses”
Organizations stay separate from each other, so working across brands never means leaking between them.
Give everyone a login
Precise permissions only pay off if you are willing to hand out accounts. That is why seats are free here — the person who should see one screen is exactly the person who never gets a login when logins are billed, and they are usually the one who most needed it.