Module 10 of 12

Settings & Administration

The control room. Users, roles, permissions, document numbers, audit log.

Who can do what, who logs in from where, what happens when. Settings is where you wire up users, the 300+ permission matrix, document numbering, notification rules, email templates and the activity log. Every change inside the app is recorded with user, timestamp and full before-vs-after JSON.

Book a free discovery call
What is inside

Everything Settings & Administration ships with.

Users: invite, role-assign, reset password, soft-delete with restore
Login by email or by login_name (flexible authentication)
Email uniqueness enforced with friendly error
Owner role protected from deletion (safety net)
5 active sessions max per user, oldest token auto-revoked
15-day token TTL with Active Sessions view and remote logout
Roles & Permissions Matrix: 300+ permissions in a single clickable grid
Bulk assign permissions by row or by column
Auto-sync new module rights via php artisan sync:permissions
Company Profile: logo, address, NTN, tax info
Document numbering with per-type prefix and counter
Form settings: toggle line-discount, tax columns per form
Notification rules to define which events email which roles
Email templates centrally rendered with company branding
Path aliases for admin-editable URL to permission mapping
Activity log with user, timestamp, before and after JSON for every action
Standout

Why teams switch to this module

300+ permissions, one matrix

Self-serve security. Your accountant can post but not delete. Your sales rep can quote but not approve credit. Your owner sees everything. No developer ticket, no menu rebuild.

Activity log = audit trail

Every create, update, delete, post and unpost is recorded with full JSON of the change. Compliance audits, dispute resolution and accountability all become one query.

Lose a phone, kill the session

Each user gets up to 5 active devices, oldest auto-revoked. Lose a device? Log in to web, kill the session, no password change required.

Built for

Who gets the most out of Settings & Administration.

  • Admins and IT leads
  • Owners shaping the security model
  • Auditors verifying control and access
Questions

Frequently asked

Yes. Revoke a permission, the user refreshes their browser, and the menu and its underlying actions disappear. Live, no re-deploy, no ticket.

Deleted users and records are flagged, not erased. The Owner role can restore them with a click. Soft-delete-aware uniqueness checks prevent the classic “duplicate entry” error when re-creating a deleted email.

Ready to put Settings to work?

Talk to our team. We will walk through your factory’s exact use case.

Book Free Discovery Call