User Settings
User Settings is your workspace team-management hub. Invite colleagues, assign them a role, fine-tune which modules they can access, optionally restrict them to specific entities (brands/units), and review a full audit trail of every action taken in the workspace.
What you'll need
Roles explained
Every user in Meiver has one of three roles. The role is the top-level access tier — permissions then layer on top for the two non-admin roles.
Full, unrestricted access to every module, every action, and every entity in the workspace. Can invite, edit, and remove any user. Cannot be restricted by entity scope or module permissions. There can be multiple Tenant Admins in a workspace.
- Invite and remove users
- Change any user's role or permissions
- Access every module without restriction
- View the full audit log
A customisable working role. An Ops Staff member's access is fully defined by their module permissions and entity scope — they see only what you grant them.
- Access modules explicitly granted (read/create/update/delete/export/manage)
- Restricted to specific entities if entity scope is set
- Can be upgraded to Tenant Admin by an existing admin
Read-only across all granted modules. A Viewer can see data but cannot create, edit, delete, or export anything. Suitable for stakeholders who need visibility without write access.
- Read-only access to selected modules
- Cannot create, update, delete, or export
- Entity scope can still be applied to limit which entities they see
- Cannot access the audit log
Invite a new user
Only Tenant Admins can invite new users. The invite flow is a two-step modal.
Click + Invite user
Fill in the details (Step 1 of 2)
Complete the fields in the first step:
- Email address (required) — the invite link is sent here
- Full name (optional) — pre-fills their display name
- Role — choose Tenant Admin, Ops Staff, or Viewer
- Entity access — optionally restrict to specific entities (see Entity Access section)
Configure module permissions (Step 2 — Ops Staff & Viewer only)
Send the invite
Configure module permissions
For Ops Staff and Viewer users, you control exactly what they can do inside each module using a permission matrix. The available actions per module are:
| Action | What it allows |
|---|---|
read | View and browse data in the module |
create | Add new records (batches, SKUs, documents, etc.) |
update | Edit existing records |
delete | Delete records |
export | Download or export data (CSV, PDF, etc.) |
manage | Administrative access — e.g. invite users, configure settings |
reports module only has read and export. The permission matrix only shows actions that are meaningful for each module.Viewer role auto-clamp: If a user's role is set to Viewer, any create/update/delete/export/manage toggles are automatically disabled — they can only receive read access regardless of what you toggle.
Restrict entity access
If your workspace has multiple entities (brands, business units, or product lines), you can restrict non-admin users to a specific subset. An Ops Staff or Viewer user with entity scope set will only see data that belongs to their allowed entities — batches, SKUs, documents, and settings are all filtered.
Open the invite or edit modal
Select the entities
Edit an existing user
You can change any user's role, module permissions, and entity access at any time. Changes take effect immediately — the user does not need to log out and back in.
Click the user row or the actions menu
Adjust role, entities, and permissions
- Change the Role dropdown — switching to Tenant Admin removes the permissions step entirely
- Update Entity access checkboxes
- Toggle module permissions on or off in the permission matrix
Click Save changes
Remove a user
Open the actions menu on the user row
Choose whether to delete the account
Confirm removal
- Yourself (your own account)
- The workspace owner (the first member ever created in the workspace)
- Another Tenant Admin (unless you are also an admin)
Audit log
Below the members table, a separate Audit log card records every user-management action taken in the workspace. This gives you a tamper-evident record for compliance and security reviews.
| Column | What it shows |
|---|---|
| Time | Date and time the action occurred (e.g. Jun 12, 2026, 2:34 PM) |
| Actor | Name and email of the user who performed the action |
| Action | Type of action, e.g. User invited, Role updated, User removed |
| Resource | What was changed, e.g. USER, MembershipPermission |
| Entity | Which entity (brand/unit) was involved, if applicable |
| Message | Human-readable summary, e.g. 'Updated role=OPS_STAFF, modules=5, scope=2 entities' |
| IP | IP address from which the action was performed |
Module permissions reference
The following modules can be granted to Ops Staff and Viewer users. Tenant Admins always have full access to all modules.
| Module key | What it controls | Available actions |
|---|---|---|
overview | Dashboard overview | read |
catalog | SKU catalogue | read, create, update, delete, export |
batches | Batch management | read, create, update, delete, export |
stages | Stage data entry | read, update, manage |
documents | Document uploads | read, create, delete |
qrcodes | QR code management | read, create, update, delete |
reports | Reports & analytics | read, export |
settings_users | User Settings (this page) | read, manage |
settings_nutrition | Nutritional Settings | read, create, update, delete, export, manage |
settings_billing | Billing & subscription | read, manage |
settings_consumer | Consumer QR page settings | read, update |
Troubleshooting & FAQs
Ready to build your team?
Invite your colleagues, assign the right roles, and keep your workspace secure.
Was this article helpful?