Roles and permissions
What the owner can do, what an agent can do, and the complete permission catalogue.
Prestafolio has two roles, and only two:
- Owner. You, the business owner. Can do everything, no exceptions, and is the only one who manages agents and billing.
- Agent (collector). Has no fixed bundle of permissions: they have the ones you grant, one by one. Two collectors in the same business can have completely different permissions.
Granting and revoking permissions
When you invite a collector you tick their initial permissions. Afterwards, in Agents → row menu → Edit permissions, you can change them whenever you like.
Important: editing permissions replaces the whole set, it does not add to it. Whatever stays ticked is exactly what they will have. If you untick everything, they end up with no permissions (they can sign in, but do nothing). And the change is immediate: if the agent is working right then, their session refreshes to apply the new permissions.
Two rules the system always enforces, no matter what you tick on screen:
- An agent can never manage agents. Agent-management permissions cannot be delegated to anyone: that is the protection against a collector escalating their own privileges or inviting people on their own.
- You cannot grant permissions from a module your plan does not include. If you try, you will see Some of those permissions are not available on your plan.
What an agent sees with no permissions at all
Even if you grant nothing, an agent who has accepted can:
- Sign in and see their own dashboard: what they collected today and this month, their assigned portfolio, their services and their cash shift. These are their figures, never the whole business's. See Collector performance.
- Look up the list and detail of clients and loans (reading them requires no permission; what is controlled is creating, editing and deleting).
Everything else must be granted.
Complete permission catalogue
These are the system's real permissions, grouped by module. The Permission column is the technical identifier you will see in the app and in error messages.
Clients
Permission | What it allows |
|---|---|
| Create clients. |
| Edit clients (including uploading and deleting their files). |
| Delete clients. |
| View client statistics. |
Loans
Permission | What it allows |
|---|---|
| Create loans (and renew them). |
| Edit loans, archive them and mark them uncollectible. |
| Delete loans. |
| Change the loan's arrears. |
Payments
Permission | What it allows |
|---|---|
| Record a payment. |
| Record payments in bulk. |
| Change a payment's interest. |
| Change a payment's arrears. |
| Mark a payment as uncollectible. |
Arrears
Permission | What it allows |
|---|---|
| Record the collection of an overdue amount. |
| Record arrears in bulk. |
| Change arrears interest. |
| Change arrears days or rate. |
| Mark an overdue item as uncollectible. |
Recurring services
Permission | What it allows |
|---|---|
| View services and their charges. |
| Create and edit service contracts. |
| Record the collection of a charge. |
| Pause, reactivate or cancel a service. |
| Waive the arrears on a charge when collecting it. |
| Accept a partial (incomplete) payment on a charge. |
The last two are exception permissions: they let the collector take less than what is owed. Grant them only to someone you genuinely trust with that call.
Cash
Permission | What it allows |
|---|---|
| View the cash drawer. |
| View whole-business cash statistics (lent/collected), not just the shift. |
| Open the cash shift. |
| Close the shift (count). |
Accounting
Permission | What it allows |
|---|---|
| View the accounting summary (the ledger). |
| Create, post and reverse manual journal entries. |
| Close a fiscal period. |
| Set the allowance target for uncollectibles. |
| Create, edit and deactivate chart-of-accounts accounts (Premium). |
Reports, documents and others
Permission | What it allows |
|---|---|
| View the business reports (Gold and Premium). |
| Create legal persons and documents (promissory note). |
| Edit legal persons and documents. |
| Delete legal persons. |
| Access the calculator. |
| View loan requests (Gold and Premium). |
Never delegable
Permission | Why it never shows up in the picker |
|---|---|
| Managing collectors is owner-only. No agent can receive them. |
| The Prestafolio subscription and payment are managed by the owner alone. |
Your plan matters too
Even if a permission exists in the catalogue, you can only grant it if your plan includes that module. For example, reports:read and request:read require Gold or Premium; the agents module itself already requires it. Permissions your plan does not enable simply do not appear in the picker. See Plans and billing.
Common errors
Message | What happened |
|---|---|
Some of those permissions are not available on your plan | A permission from a module your plan lacks was included. None of the batch is applied: fix it and retry. |
You do not have permission to perform this action | The agent tried something you did not grant. If they should be able to, tick it in Edit permissions. |
Owner only | An agent tried to open the Agents section. It is not grantable: it belongs to the owner, period. |