Access and permissions
From Administration > Access and permissions you manage the organization owners and module visibility for the Pro role.
The page has two tabs:
- Owners: the people responsible for the organization.
- Roles and visibility: the configuration of what the Pro role can see and do.
Roles
A user's role determines what they can do in Flo:
| Role | When to use it |
|---|---|
| User | End user or client of the business. |
| Pros | Team member, instructor, agent, or staff member with operational duties. |
| Admins | Manager who handles users, content, services, bookings, or properties. |
| SuperAdmin | Advanced profile for sensitive configurations. Use only when needed. |
Account management and role assignment happen in Users.
Owners
Owners are the users responsible for the organization and for administrative communications.
- Admins and SuperAdmins see the list with name and email; only SuperAdmins see the actions column and can add or remove owners: Add Owner, search for the user by name, email, ID, or phone number, then save. Removal requires confirmation.
- A user cannot appear twice as an owner.
Visibility for the Pro role
The Pro role section collects the modules, sections, and actions the Pro role can use in the app.
How to configure it
- Open the module group with the pills at the top: Organization, People, Website, Booking, Analytics, Communication, Finance, Properties.
- Enable Visible to show the whole section to the Pro role. If the section is disabled, everything inside it is disabled.
- For each entry, enable the View checkbox to allow reading the module.
- If the entry has actions, enable Edit and Delete separately.
- Check the Changes from standard summary.
- Press Save Pro visibility.
The Use standard configuration checkbox restores standard values; press Save Pro visibility to apply them. The save button stays disabled until there are changes to save.
Notes:
- Actions are independent from reading: you can grant read-only access, or reading with editing, or reading with editing and deletion.
- Closures start disabled: you can enable visibility and then separately enable creation, editing, and deletion.
- Modules disabled by the configuration features do not appear in the configurator: they cannot be edited from here.
Effects of changes
- Disabled entries disappear from the sidebar and from the Administration tabs.
- Opening a disabled route via a direct URL is denied or redirected.
- Protected data is denied at backend level too: hiding an entry is not a security measure, verification still happens.
- Admins and SuperAdmin are not subject to these restrictions.
- Active configuration features remain an upper limit: even an entry enabled here does not appear if the module is switched off.
- If you don't save any customization, the Pro role keeps the default visibility.
To understand who can manage users and roles, see Users. For organization data and owners, see Company and organization.