Skip to main content

Control who can access People

Decide who can see and work with personnel, and how far their access reaches.

:::info Organisations with an external HR system A person's synchronized identity, email and employment status are read-only in Markular. You can still assign Markular roles and country restrictions here. Correct identity details in the HR system instead. See Work with personnel managed by an external HR system. :::

Before you start

  • You need the Administer personnel permission. This is the highest level, and it is the only level that can change who has access to People. See the People permissions reference for what each level can do.
  • Decide two things for each person: which permission level they need, and whether their view should be limited to a subset of the workforce.

Steps

  1. Open People, then Settings, then Access Control.
  2. Find the person in the Users & Roles list whose access you want to set.
  3. Select Manage Roles for that person. The available roles are grouped by area (realm): HR, Projects, and System.
  4. Tick the roles that give the access their job needs. Roles grant the underlying permission levels (view, manage, or administer); the People permissions reference explains what each level can do.
  5. Save. The new access takes effect the next time the person opens People.
  6. Where your organisation uses it, limit which people someone sees with Country Restrictions (a separate page under Settings), for example the crew in one country.

The Access control screen with the role-assignment, available-role, and realm counts, and the Users and Roles table listing each user with their realms, assigned roles, and a Manage Roles action.

Good to know

  • Restrictions are optional. If you set no restriction, the person sees the whole workforce at their permission level.
  • Country Restrictions are an administrator-level area, so only administrators can create or change them.