Team & User Permissions
Invite your staff, give each person exactly the tools their job needs, and keep the money views scoped to what they should see.
Roles - the starting point
Every teammate you invite gets a role, and the role sets a sensible starting level of access. Owner has everything. Manager runs operations including the virtual terminal and saved cards, but can't touch banking. Accountant can invoice and export but never hand-keys a card. Clerk handles daily operations and the countertop terminal. Register is for POS staff who should only ever see the register.
The team page shows a plain-language card for each role describing exactly what it can do with money, so you pick knowing what you're handing over - and you can change anyone's role at any time.

The Billing Tools only user
Sometimes none of the standard roles fit - you want a person to use one or two specific tools and nothing else. Invite them as Billing Tools only: this user starts with NOTHING. After they accept, open Tool access on their row and check exactly the modules they may use. Everything unchecked stays invisible to them.
This is the right choice for front-desk staff at a practice or clinic: give them the terminal, keep everything else off.
Tool access - per-person module control
You control access at every moment: BEFORE the invite (the invite form has a 'Set tool access now' panel, pre-checked with the selected role's defaults), WHILE the invite is pending (the same panel sits on their pending row), and any time AFTER (on their active row). It's a checklist of the billing modules - virtual terminal, Handpoint terminal, saved-card vault, invoices & estimates, payment links, recurring billing, credit memos, inventory, scheduling, transactions, reports, statements, exports, checkout pages, and the register. A check means that person can use it, whatever their role would normally say. So a Manager can lose inventory, or a Clerk can gain invoices - each person gets exactly their job.
- 1Account → Team → find the teammate (or open 'Set tool access now' while inviting) → Tool access.
- 2Check the modules they may use; uncheck the ones they may not.
- 3Save. Changes apply immediately - even before the invite is accepted.

Handpoint devices - any device, or locked to one
If your business runs several card readers - a medical office with five terminals moving between rooms, say - each person with Handpoint access can either choose any device in the office at charge time, or be locked to one specific device by its serial number. A locked user only ever sees their device in the terminal picker.
Only their own activity
Turn on 'Only show this user their own activity' and their money views - transactions, card volume, invoices, estimates, payment links - show ONLY what they personally ran or created. They never see the whole business's numbers. Perfect for commissioned staff or any setup where one employee shouldn't browse another's sales.
Why we text you a code
Inviting someone, removing someone, or changing their access is exactly what an account thief would do first - so every team change is confirmed with a security code texted to the account owner's mobile. If the page asks for your cell, that's why: without a mobile on file, team changes can't be confirmed.
