Back to guides

Collaboration

Setting up team permissions

Give people the access they need for their responsibilities without assuming broader access than the work requires.

6 min

Financial systems contain information and actions that should not be available to everyone simply because they work at the same organization.

Start from responsibility

List the work each person is expected to perform, the information they need to see, and the actions they need to take. Permission design should follow those responsibilities rather than job-title assumptions alone.

Use least privilege as a starting point

Grant enough access to do the work and expand it when a real responsibility requires more. Broad access is harder to review and easier to forget.

Separate viewing from acting

Reading financial information, changing configuration, approving an action, and administering access are different responsibilities. Where your current platform distinguishes them, assign those capabilities deliberately.

Review access when roles change

Team membership and responsibilities change. Include access review in onboarding, role changes, offboarding, and periodic control checks.

Preserve accountability

Where your VissoraX environment provides activity or audit records, use them to understand material changes and access decisions.

Roles, permission names, invitation flows, and activity views may vary by platform. Follow the controls in the relevant VissoraX environment and keep access aligned to real responsibilities.