Platform & admin

CRM roles and permissions, audit and admin controls

Set CRM roles and permissions, scope what each person can see, manage users and teams, and keep an append-only audit log — the controls a team needs before adding people.

Before a team grows past a handful of people, a CRM needs controls: who can see which records, who can change settings, and a record of what changed and when. DigiPix Flow puts those controls in the same workspace the team sells from, so setting them up is part of setting up the CRM rather than a separate project.

Users and teams come first: invite teammates, organise them into teams and a sales hierarchy, and manage who has access. Custom roles decide what each person can do, and each role carries a data scope — their own records, their team's, or everything — so a rep works their own pipeline while a manager sees the team's.

Settings are yours to shape: the organisation profile, custom fields, tags, pipeline configuration, email templates, notification preferences and localisation, so the CRM follows your process rather than the other way round.

For compliance, append-only audit logs record user activity, data changes and integration events, kept for as long as your plan allows, and the audit trail can be exported to CSV for the people who review it. Multi-factor sign-in is available on every plan and can be enforced across the whole workspace.

These controls are designed to be set once and then trusted. A new hire gets the role for their job and sees exactly the records that role allows; someone who leaves is removed in one place; and when an auditor or a client asks who changed a record, the answer is in the log with a date and a name rather than in somebody's memory. Integration activity is logged too, so when a lead source goes quiet, its log shows when the last event arrived.

None of this needs a consultant to maintain. Roles, teams and settings are edited from the admin screens by whoever you trust to own them, with no support ticket in between, and a change to a role applies to everyone who holds it — which is what keeps access tidy as people join, move and leave.

👥Starter+

Users & teams

Invite teammates, organise teams and your sales hierarchy, and manage who has access.

  • ✓User directory, invitations and user details
  • ✓Teams and sales hierarchy
  • ✓Seat limits by plan tier
Team directory
👥Active users18
↳Pending invites3
▣Teams4
🔒Starter+

Roles & permissions

Granular permission control with custom roles, each with a data scope: own records, the team's, or everything.

  • ✓Roles, permissions and role-permission mapping
  • ✓User role assignment and data access rules
  • ✓Custom roles with their own data scope
Role matrix
🔒Roles defined6
◎Sales rep12 users
▣Manager4 users
⚙Starter+

Settings & custom fields

Configure CRM behaviour, custom fields, tags, templates and localization — your motion, your rules.

  • ✓Organization profile and CRM settings
  • ✓Custom fields, tags and pipeline configuration
  • ✓Email templates, notification preferences and localization
CRM settings
⚙Custom fields24
▣Pipeline stages6
✉Templates18
▤Starter+

Audit & compliance

Append-only audit logs of user activity, data changes and integration events, kept for as long as your plan allows.

  • ✓CRM audit logs and user activity history
  • ✓Data change tracking with organization scope
  • ✓Integration activity logs; retention by plan tier
Audit trail
▤Events today1,842
👤User logins64
⇅Data changes312
🛡Starter+

Security & access

Multi-factor sign-in, roles with data scope, and an append-only audit trail — access your auditors can follow.

  • ✓MFA on every plan, enforceable workspace-wide
  • ✓Custom roles with scope: own records, the team's, or everything
  • ✓Append-only audit trail, exportable to CSV
Learn more about security & access
Access policies
🛡MFA enforcedOn
🔑Roles & scopeOn
✓Audit exportOn

Frequently asked questions

What are CRM roles and permissions?

Roles define what each person can do in the CRM, and permissions map those abilities to each role. In DigiPix Flow each custom role also has a data scope: its own records, the team's, or everything.

Can we require multi-factor sign-in?

Yes. Multi-factor sign-in is available on every plan and can be enforced across the whole workspace.

What does the audit log record?

User activity, data changes and integration events, in append-only logs kept for as long as your plan allows. The audit trail can be exported to CSV.

Can we organise users into teams?

Yes. Group users into teams and a sales hierarchy, and use a role's team scope so managers see their team's records.

Can we change fields and settings ourselves?

Yes. Custom fields, tags, pipeline configuration, email templates, notification preferences and localisation are all managed in settings, without asking support.

Is there a limit on how many users we can add?

Seats depend on your plan tier. You can add users whenever the team grows rather than waiting for a renewal date, and remove someone's access in one place when they leave.

Can we see integration activity?

Yes. Integration events are logged alongside user activity and data changes, so when a lead source goes quiet you can see when its last event arrived.

Core platform & admin features available from Starter plans and above.

See DigiPix Flow on your own pipeline

Talk to an expert — bring your leads, your team and the way you sell, and we will show you how it fits.

Talk to an expert