Roles & Permissions in SiFi

Roles & Permissions in SiFi

SiFi Roles & Permissions Guide

What is this? A clear, easy-to-use guide designed for clients to see who can do what across every module in SiFi
. Find your role in the tables below to see what actions you can (✅) and cannot (-) perform


1. The Roles, in Plain Words

Think of roles as job hats
. A person can wear more than one hat, and their overall access is the sum of all their assigned hats

Role
System Admin
Authorized User
Finance Manager
Budget Manager
Accountant
Accounting Auditor
HR Admin
Transfer Initiator
Budget Member
Employee

2. Two Important Things to Know
All vs. Own - The Hidden Scope Layer

A permission name alone doesn't tell the whole story

 Many permissions come in two flavors at runtime:

  • All - Admin-level roles (System Admin, Authorized User, Finance Manager) see and act on everyone's records. For example, "View Expense" for them means all expenses in the company.

  • Own - End-user roles (Employee, Budget Member) get the same permission name but scoped to their own records. "View Expense" for them means my expenses only.

  • Budget-scoped roles (Budget Manager, Budget Member) are additionally limited strictly to their budget.

What the Action Words Mean

  • View - See it

  • Create / Update / Delete - Add, edit, remove it

  • Pay - Actually send the money (the final approval step)

  • Request - Ask for something (a card, a limit) that goes through an approval workflow; you are not executing it directly

  • Manage - Full control over a settings area

3. Client Module Matrices

✅ = Allowed | - = Not allowed

Accounts & Balances

PermissionSysAdminFinance ManagerAuthorized UserBudget MgraccountantAccounting AuditorHrAdminTransfer InitiatorBudget MemberEmployee
View Account



-



-


-

-

Create Account



-

-

-

-

-

-

-

Update Account



-

-

-

-

-

-

-

Delete Account

-


-

-

-

-

-

-

-

View Account Balance




-

-

-

-

-

-

Add Funds



-

-

-

-

-

-

-

Cards

PermissionSysAdminFinance ManagerAuthorized UserBudget ManageraccountantAccounting AuditorHrAdminTransfer InitiatorBudget MemberEmployee
View Card






-

-



Create Card




-

-

-

-

-

-

Update Card




-

-

-

-


-

Delete Card




-

-

-

-

-

-

Request Card
-

-

-

-


-

-

-



Update / Request Limit




-

-

-

-


-

Expenses

PermissionSysAdminFinance ManagerAuthorized UserBudget ManageraccountantAccounting AuditorHrAdminTransfer InitiatorBudget MemberEmployee
View Expense






-

-



Create Expense





-

-

-



Update Expense






-

-



Delete Expense

-


-

-

-

-

-

-

-

Reimbursements

PermissionSysAdminFinance ManagerAuthorized UserBudget ManageraccountantAccounting AuditorHrAdminTransfer InitiatorBudget MemberEmployee
View Reimbursement






-

-



Create Reimbursement





-

-

-



Update Reimbursement






-

-



Delete Reimbursement

-


-

-

-

-

-

-

-

Pay Reimbursement



-


-

-

-

-

-

Transfers & Payments

PermissionSysAdminFinance ManagerAuthorized UserBudget ManageraccountantAccounting AuditorHrAdminTransfer InitiatorBudget MemberEmployee
View Transfer





-

-


-

-

Create Transfer





-

-


-

-

Pay Transfer



-


-

-

-

-

-

Cancel Transfer



-


-

-

-

-

-

Beneficiaries & Vendors

PermissionSysAdminFinance ManagerAuthorized UserBudget ManageraccountantAccounting AuditorHrAdminTransfer InitiatorBudget MemberEmployee
View Beneficiary/Vendor





-

-


-

-

Create/Update Beneficiary/Vendor



-


-

-


-

-

Budgets & Spaces

PermissionSysAdminFinance ManagerAuthorized UserBudget ManageraccountantAccounting AuditorHrAdminTransfer InitiatorBudget MemberEmployee
View Space






-

-


-

Create Space



-

-

-

-

-

-

-

Update / Delete Space




-

-

-

-

-

-

Manage Space




-

-


-

-

-

Team & Roles

PermissionSysAdminFinance ManagerAuthorized UserBudget ManageraccountantAccounting AuditorHrAdminTransfer InitiatorBudget MemberEmployee
View User




-

-

-

-

-


Invite / Remove User



-

-

-


-

-

-

Update User Roles




-

-


-

-

-

Assign Admin Role
-

-

✅ (Only)

-

-

-

-

-

-

-

Accounting & Reports

PermissionSysAdminFinance ManagerAuthorized UserBudget ManageraccountantAccounting AuditorHrAdminTransfer InitiatorBudget MemberEmployee
Read / Update Accounting






-

-

-

-

View Reports & Insights






-

-

-

-