Staff Profiles - Part 2 - Permissions

Modified on Thu, 1 Oct at 3:24 PM

Permissions for Staff Profiles


Required Permissions


Staff profiles are found in the Personnel Management module.


The permissions directly related to managing staff profiles are:


PermissionDescription
Desktop:Show Staff Profiles Menu ItemShow the Personnel Management > Staff Profiles menu item
Genders: Can Manage GendersAllow a user to manage Gender list
Staff Records:Cancel Own LeaveAllow a user to cancel their own leave requests
Staff Records:Create Staff RecordsAllow a user to create staff profiles
Staff Records:Delete Leave Time TypesAllow a user to delete staff leave time types
Staff Records:Delete Leave TypesAllow a user to delete staff leave types
Staff Records:Edit Leave Time TypesAllow a user to edit staff leave time types
Staff Records:Edit Leave TypesAllow a user to edit staff leave types
Staff Records:Edit Staff RecordsAllow a user to edit staff profiles
Staff Records:Enable/DisableAllow a user to enable and disable staff profiles
Staff Records:Link To RecordsAllow a user to create links to and from staff profiles
Staff Records:Manage IllnessAllow a user to manage staff illness reports
Staff Records:Manage LeaveAllow a user to manage staff leave requests
Staff Records:Print Staff RecordsAllow a user to print staff profiles
Staff Records:Remove LinksAllow a user to remove links attached to staff profiles
Staff Records:Report IllnessAllow a user to report illness
Staff Records:Request LeaveAllow a user to request leave for a staff member
Staff Records:Search Staff RecordsAllow a user to perform a search for staff profiles
Staff Records:View HistoryAllow a user to view the change history for staff profiles
Staff Records:View Home AddressAllow a user to view a staff member’s home address
Staff Records:View Home PhoneAllow a user to view a staff member’s home phone number
Staff Records:View IllnessAllow a user to view staff illness reports
Staff Records:View LeaveAllow a user to view staff leave requests
Staff Records:View Mobile PhoneAllow a user to view a staff member’s mobile phone number
Staff Records:View PayrollAllow a user to view a staff member’s payroll
Staff Records:View Print HistoryAllow a user to view the print history for staff profiles
Staff Records:View Staff RecordsAllow a user to view staff profiles


Note

When the Personnel Management module is enabled for your account, a user can always view and edit their own staff profile, even without the ‘Staff Records:View Staff Records’ or ‘Staff Records:Edit Staff Records’ permissions — this is a legal requirement and applies regardless of role.

Therefore, general users who don't manage other staff don't need these permissions as they can access their own information through, 'My Profile > View My Staff Profile'.



System Roles


The system roles which use these permissions are listed below.


The ‘Personnel Management Viewer’ and ‘Global Viewer (excluding admin)’ roles include:


  • Desktop:Show Staff Profiles Menu Item
  • Staff Records:Search Staff Records
  • Staff Records:View History
  • Staff Records:View Home Address
  • Staff Records:View Home Phone
  • Staff Records:View Illness
  • Staff Records:View Leave
  • Staff Records:View Mobile Phone
  • Staff Records:View Payroll
  • Staff Records:View Print History
  • Staff Records:View Staff Records


The ‘Personnel Management Editor’ and ‘Global Editor (excluding admin)’ roles include:


  • Desktop:Show Staff Profiles Menu Item
  • Staff Records:Create Staff Records
  • Staff Records:Delete Leave Time Types
  • Staff Records:Delete Leave Types
  • Staff Records:Edit Leave Time Types
  • Staff Records:Edit Leave Types
  • Staff Records:Edit Staff Records
  • Staff Records:Enable/Disable
  • Staff Records:Link To Records
  • Staff Records:Manage Illness
  • Staff Records:Manage Leave
  • Staff Records:Print Staff Records
  • Staff Records:Remove Links
  • Staff Records:Report Illness
  • Staff Records:Request Leave
  • Staff Records:Search Staff Records
  • Staff Records:View History
  • Staff Records:View Home Address
  • Staff Records:View Home Phone
  • Staff Records:View Illness
  • Staff Records:View Leave
  • Staff Records:View Mobile Phone
  • Staff Records:View Payroll
  • Staff Records:View Print History
  • Staff Records:View Staff Records


The ‘Personnel Management Editor’ role also includes:


  • Genders: Can Manage Genders


‘Staff Records:Cancel Own Leave’ is not included in any of the roles above. The only system role which includes it is ‘Administration Editor’.

Unlike requesting leave and reporting illness, which a user can always do on their own staff profile, cancelling leave always requires this permission. A user without it cannot cancel their own leave requests.


Note

These permissions only apply in the Organisational Units where the user has been granted them. How this is checked depends on the permission:

‘Staff Records:View Staff Records’, ‘Staff Records:Edit Staff Records’ and ‘Staff Records:View Leave’ are checked against the staff member’s home OU.

‘Staff Records:View Home Phone’, ‘Staff Records:View Home Address’, ‘Staff Records:View Mobile Phone’, ‘Staff Records:View Payroll’, ‘Staff Records:Request Leave’ and ‘Staff Records:Report Illness’ are checked by location: the user needs the permission in any OU within the staff member’s location. The same applies to ‘Staff Records:Cancel Own Leave’ and ‘Staff Records:Manage Leave’ when cancelling a leave request.

If a staff profile has no home OU, it can be viewed or edited by any user who holds the relevant permission in any OU.

For example, let’s suppose Ana is a team leader and member of a user group which links the role, ‘Personnel Management Editor’ to her department’s OU (‘Bacteriology OU’).

One of her staff, Jacob, is borrowed from another department so his home OU is the ‘Molecular OU’. Ana won’t be able to view or edit Jacob’s staff profile unless she is also member of a user group with the role, ‘Personnel Management Editor’ in the ‘Molecular OU’.

Account administrators and site administrators pass all of these permission checks. Location administrators have all of these permissions, but only for OUs in the locations they administer.

Read-only users can only be given the ‘Global Viewer (excluding admin and personnel records)’ role, which contains none of the Staff Records permissions, so they cannot use these permissions. They can still view their own staff profile.


Next step:

The next article covers Searching and managing Staff Profiles 


Previous step:

The previous article covers Staff Profiles Introduction

Was this article helpful?

That’s Great!

Thank you for your feedback

Sorry! We couldn't be helpful

Thank you for your feedback

Let us know how can we improve this article!

Select at least one of the reasons
CAPTCHA verification is required.

Feedback sent

We appreciate your effort and will try to fix the article