Operating journey / step 50

Security and recovery

Reference

Use this guide when work has reached this point. If the visible state does not match, stop and follow the named hand-off.

Understanding Users and Roles

Choose the smallest StoreFulfil role that lets each person do their job.

Updated Aug 2026
Owner: Operations Admin
Area: Settings

Before you begin

Make role and client scope understandable so each person can see which actions belong to them and when to ask an Admin.

Prerequisites

  • The person’s intended role and client scope are known.
  • The Admin can review the user record and client assignment.
  • A role change is approved by the Operations Admin.

Stop and check

Do not share accounts or grant a role merely to make an action available.

StoreFulfil uses four current roles. Older accounts labelled Operator are treated as Worker accounts.

Roles

  1. Admin: Controls organisation-wide setup, users, connections, and sensitive recovery work.
  2. Manager: Supervises floor work and receives only the extra management permissions assigned by an Admin.
  3. Worker: Handles normal warehouse work such as picking and packing. Older screens may call this role Operator.
  4. Brand: Can see only the client account assigned to that user.

What this is and when to use it

Use this Admin reference when giving someone access or checking why an action is unavailable.

Choose the least access needed

  1. Confirm the person’s warehouse role and client scope.
  2. Use Operator for assigned fulfilment work, Admin for management and recovery, and Brand for the permitted client view.
  3. After a change, have the person sign in and check that the expected scope is visible.
  4. Do not share an account to work around a missing permission.

Questions and hand-off

If A worker needs an Admin action

Keep the worker in their role and hand the case to an Admin.

If A person sees another client

Stop and report the scope problem; do not browse or change that client.

What happens next

The user sees only the role and client work approved for them. Role changes remain an Operations Admin decision.

Expected Outcome

Each user has the smallest role needed for their work, and Brand users remain limited to their assigned client.

Runbook evidence

Use these signals to decide whether the work is ready to continue, complete, or needs an owner.

State checkpoints

Warehouse Operator

The user performs assigned fulfilment work and hands admin-only cases over.

Next: Use the visible queue and order state without changing settings or connections.

Warehouse Admin

The user manages clients, connections, inventory, recovery, and user access.

Next: Perform sensitive actions only after reviewing the displayed result.

Brand User

The user sees only the permitted client scope and does not manage warehouse operations.

Next: Report an unexpected scope rather than attempting an administrative action.

Completion evidence

  • The user sees only the intended role and client scope after the change.

Escalation evidence

  • Record the user, intended role, client scope, and Admin decision without passwords.

Work safely

Who may take this action

Warehouse Admin

What you should see

The user performs assigned fulfilment work and hands admin-only cases over.

Safe next step

Use the visible queue and order state without changing settings or connections.

What not to do

Do not share accounts or grant a role merely to make an action available.

How to tell it is complete

The user sees only the intended role and client scope after the change.

© 2026 STOREFULFIL PTY LTD (ACN 701 718 649 · ABN 98 701 718 649), Queensland, Australia · StoreFulfil™ Operations Library.