RBAC — Role-Based Access Control Platform-wide
Granular permission engine controlling every screen, field, button, and report across all 16 modules.
Role Management
- Unlimited custom roles per company
- Role hierarchy & inheritance
- Super admin / company admin / module admin
- Role cloning & template roles
- Time-bound role assignment
- Location / branch-based roles
- Guest / auditor read-only roles
Permission Granularity
- Module-level on/off
- Screen / page level control
- Field-level visibility & editability
- Button / action level (approve, delete, export)
- Report & dashboard access
- Data-level (own / team / all records)
- IP address & device restrictions
Multi-Entity Access
- Company / branch / plant isolation
- Cross-entity role mapping
- Consolidated view permission
- Subsidiary access control
- Intercompany transaction access
- User switch between entities
- Entity-specific menu customisation
Authentication
- SSO (SAML 2.0 / OAuth 2.0)
- Two-factor authentication (2FA)
- Biometric login (mobile)
- Session timeout management
- Password policy enforcement
- Login attempt lockout
- API key management per user
Log Management & Audit Trail System-wide
Immutable, tamper-proof logs for every user action, data change, system event, and integration call across the entire platform.
Activity Logs
- Every create / edit / delete logged
- Field-level change tracking (old → new)
- User, timestamp, IP, device captured
- Record-level audit trail tab
- Bulk action tracking
- Print / export action log
- Login / logout audit
Integration Logs
- API call log (inbound & outbound)
- Webhook delivery log & retry history
- E-invoice push to IRP log
- E-way bill API log
- Bank feed sync log
- GST portal sync log
- 3PL / carrier API log
System Event Logs
- Scheduled job execution log
- Period close / open events
- Data import / export log
- Batch process run history
- Email / SMS / WhatsApp delivery log
- Error & exception log
- Performance / slow query log
Log Analytics
- Log search & filter (full-text)
- Suspicious activity alerts
- Sensitive data access alerts
- Log retention policy (configurable)
- Log export (CSV / SIEM integration)
- Compliance report from logs
- Log archival & purge policy
Platform Infrastructure Cross-cutting
Core platform services that every module consumes — notifications, integrations, customisation, and analytics.
Notification Engine
- Rule-based notification triggers
- In-app / email / SMS / WhatsApp / push
- Notification template builder
- Digest / summary notifications
- Notification preference per user
- Escalation notification chains
- Read / unread tracking
Integration Hub
- REST API (full CRUD)
- Webhook builder (inbound & outbound)
- Pre-built connectors (Tally, SAP, banks)
- EDI / XML / EDIFACT support
- Razorpay / PayU / HDFC payment
- Shiprocket / Delhivery / FedEx
- GST Suvidha Provider (GSP) integration
Customisation
- Custom fields (any module, any type)
- Custom forms & layouts per role
- Custom document numbering series
- Custom status workflows
- Custom dashboards & widgets
- Custom report builder (drag-drop)
- White-label & branding per entity
AI & Automation
- AI-powered demand forecasting
- Anomaly detection (spend, inventory)
- Smart duplicate detection
- OCR for invoice / document capture
- Predictive maintenance alerts
- Auto-reconciliation (bank, GST)
- Workflow automation (rule engine)
Multi-Company Setup
- Unlimited companies / branches / plants
- Intercompany transactions & elimination
- Consolidated P&L & balance sheet
- Shared masters (items, customers)
- Company-wise settings isolation
- Transfer pricing management
- Group-level MIS
Mobile & Offline
- Native mobile app (iOS & Android)
- Offline data entry & sync
- Mobile approvals & dashboards
- Barcode / QR scanner (mobile)
- GPS-tagged transactions
- Mobile POS
- Field force app with beat plan