User Permissions
m usertoken
Need to add permissions to some of your administrators? The Client Portal, Onsite Track Easy, its related Supplier Portals and the Mobile App can all share the same login. In order to manage the number of users at your Site or Realm, the Onsite Track Easy system allows for permissions and restrictions on what a user account can do.
This section covers the most common permissions granted to our two main user types. Realm Users and Site Users.
NOTE: When adding permissions, or requesting them, ensure you are familiar with the impact it might have on the administrator now being able to see confidential information, (private data/sensitive data), being able to add roles, competencies or enrol someone into training for example. All of these extra permissions can have an unintended effect. If unsure, please reach out to your Avetta Account or Client Success Manager.
Here are two videos to help Administrators see the process of Managing a New User at a Site or Realm.
Managing Realm User Accounts
This covers the initial process of creating a new user at the realm level and showing relevant permissions. It details the user permissions and what each will do and how a Workforce Management account is triggered and its activation.
Managing Site User Accounts
This covers the additioanl site based permissions that correspond when a worker is given permissions at one or more sites withing a realm. It also covers the different permissions that can be enabled for site specific functions.
Managing Realm User Permissions for Client Admins
Video showing how to Create Realm Users and manage permissions.
Also shows how a Workforce Management Account is triggered for that new Realm/Site user.
Managing Site User Permissions for Client Admins
Video showing how Site Users permissions are added to a worker
Additionally there are four user guides that explain more about the individual permissions, access levels and definitions of terms.
Creating User Accounts
The below tables shows standard permissions for various user accounts.
| Version 3 Only (Client Portal Integtation) |
| Version 2 & 3 |
| Version 2 Only (No Client Portal Integration) |
- Optional Configuration Setting
NOTE: * Optional configuration for the ability "Can Log Persons In and Out" requires that the site/realm has that feature enabled in the database. Enabling this will allow ANY mobile app user with "Can Log Persons In and Out", to modify workers login. Only enable if specifically required.
REALM ACCOUNTS
User Type | Super User | Standard |
Can Use Onsite | ||
Realm Access Level: Data Viewer / Data Editor | Data Editor | Data Editor |
Can View Foreign Data From: Own Employer / All Employers | All Employers | All Employers |
Can Represent Concos in Own Portals: |
| |
Can Represent Employers: Own Employer / All Employers | All Employers | All Employers |
Analytics Report Role: Manager / Supervisor / User |
|
|
Can View SMS Review Results: |
| |
Can Manage User Accounts: |
| |
Can Access Financial Reports: * Not Currently Used |
|
|
Can Block Cardholders: | ||
Can Create Certs: |
|
|
Can Assign Certs: | ||
Can Authorise Assigned Certs: |
|
|
Can Create Realm Roles: |
|
|
Can Assign Realm Roles: | ||
Can Create Competencies: |
| |
Can Approve Site Competencies: |
|
|
Can Assign Competencies: | ||
Can End Employment: | ||
Can Print Cards: |
| |
Can Edit Realm Settings: |
|
|
Can Edit Admin Notes: |
|
|
Can Download Files: | ||
Can Upload Files: | ||
Can Access Private Data: | ||
Can Access Sensitive Data |
| |
Can Edit Incomplete Actions: |
|
|
Can Process Escalated Actions: |
|
|
Can Create Corrective Actions: |
|
|
Can Process Corrective Actions: |
|
|
Can Action Corrective Actions: |
|
|
Can View Corrective Actions: |
|
|
Can Process Pending Data: |
| |
Can Endorse Pending Assessments: * Not Currently Used |
|
|
Can Process Pending SMS Reviews: * Not Currently Used |
|
|
Can Manage Classroom Training: | ||
Can Manage Online Training: | ||
Can Manage Assessments: |
| |
Can Manage Merge Templates: |
|
|
Can Perform Id Checks: * Not Currently Used |
|
|
Can Perform Global Search: *issued by Pegasus account managers only |
|
|
Can Manage Social Security Number |
|
|
|
|
|
|
|
|
Mobile App Rights | ||
Can Use Mobile App | ||
Can Perform Cardholder Role Audits | ||
Can search by Cardholder Name, Company and DOB | ||
Can Manage Emergency Events | ||
Can Send SMS for Emergency Events | ||
Broadcasting Rights | ||
Can View All Broadcasts | ||
Can Send Email Broadcasts |
|
|
Can Send SMS Broadcasts |
|
|
Other Rights | ||
Can Make Online Bookings |
|
|
Can Process Online User Requests |
|
|
SITE ACCOUNTS
User Type | Mobile App User | Supervisor | Super User | Full |
Site: | As Required | As Required | As Required | As Required |
Can Use Onsite | ||||
Data Access Level: Data Viewer / Data Editor | Data Viewer | Data Editor | Data Editor | Data Editor |
Can View Foreign Data From: Own Employer / All Employers | No Employers | All Employers | All Employers | All Employers |
Can Represent Employers: Own Employer / All Employers | No Employers | All Employers | All Employers | All Employers |
Analytics Report Role: Manager / Supervisor / User |
|
| ||
Can View SMS Review Results |
|
|
| |
Can Manage User Accounts |
|
| ||
Can Access Financial Reports: * Not Currently Used |
|
|
|
|
Can Block Cardholders |
| |||
Can Log Persons In And Out* Requires Editor Access | ||||
Can Create Logpoint Messages |
|
| ||
Can Edit All Logpoint Messages |
|
| ||
Can Create Certs |
|
|
|
|
Can Assign Certs |
|
| ||
Can Authorise Assigned Certs |
|
|
|
|
Can Create Cert Keys |
|
|
| |
Can Assign Cert Keys |
|
| ||
Can Create Roles |
|
|
|
|
Can Assign Roles |
|
| ||
Can Create Competencies |
|
|
|
|
Can Assign Competencies |
|
| ||
Can Create Access Keys |
|
|
| |
Can Assign Access Keys |
|
| ||
Can Associate Contractors |
|
| ||
Can Associate Employees |