Admin: Access Control (ACL)

Complete guide to configuring feature access permissions and controlling which features employees can access in CitoHR.

Overview

The Admin Access Control (ACL) section allows you to configure which features are available to employees in your organization. You can enable or disable access to specific features like Leave Management, Expenses, Training, Equipment, and more. This gives you control over what functionality employees can use, allowing you to customize CitoHR to match your organization's needs and subscription level.

Prerequisites

  • You must have ADMIN role to configure access control

Accessing Access Control

  1. Log in to your CitoHR account with Admin credentials
  2. Click on your organization name in the header
  3. Select "System" from the admin menu
  4. Click "Access Control" from the System dropdown
  5. Or navigate directly to /admin/acl
Admin navigation showing Access Control option
Navigate to Admin > System > Access Control

Viewing Access Control Settings

See all feature access settings:

  1. On the Access Control page, you'll see a list of feature sections
  2. Each section contains related features with toggle switches
  3. Common sections include:
    • Time & Attendance (Leave, Sickness, Scheduling)
    • Financial (Expenses, Payroll)
    • Development (Training, Feedback, Reviews)
    • Resources (Documents, Equipment, Policies)
    • Administration (Forms, Reports, Settings)
  4. Toggle switches show whether each feature is enabled (ON) or disabled (OFF)
Access Control page showing all feature toggles
View and configure feature access permissions

Enabling or Disabling Features

Control feature access:

  1. On the Access Control page, find the feature you want to configure
  2. Locate the toggle switch next to the feature name
  3. Click the toggle to enable (ON) or disable (OFF) the feature:
    • ON - Feature is available to employees
    • OFF - Feature is hidden and unavailable
  4. The change will be saved automatically
  5. Employees will see or not see the feature based on the setting
Toggling feature access on Access Control page
Enable or disable features with toggle switches

Saving Access Control Settings

Save your access control configuration:

  1. After making changes to feature toggles, click the "Save" button (usually at the bottom of the page)
  2. A success message will confirm the settings were saved
  3. Changes will be applied immediately
Saving Access Control settings
Save access control configuration

Resetting to Default Settings

Restore default access control settings:

  1. On the Access Control page, click the "Reset to Defaults" button
  2. A confirmation dialog will appear
  3. Review the warning message
  4. Click "Confirm" to proceed
  5. All settings will be reset to default values
  6. Default settings typically enable all standard features

Feature Access Considerations

Things to consider when configuring access:

  • Some features may require Pro subscription - disabling them won't affect subscription costs
  • Disabling a feature hides it from employees but doesn't delete existing data
  • Re-enabling a feature restores access to all existing data
  • Consider your organization's needs and subscription level when configuring access
  • Some features may have dependencies - disabling one feature might affect related features

Best Practices

  • Review access control settings during initial setup
  • Enable only the features your organization needs and uses
  • Disable unused features to simplify the employee experience
  • Regularly review access settings as your organization's needs change
  • Consider your subscription level when enabling Pro features
  • Test feature access from an employee account to verify settings
  • Document your access control configuration for reference
  • All CitoHR features that can be controlled through access control settings