Users and roles
Updated on 2026-10-02
A staff member gets a column in the calendar. A user can log in. Those are two different things, and you link them to each other.
Where do I find this?
Instellingen → Gebruikers (users).
The form
Wie (who)
| Field | Required | Notes |
|---|---|---|
| Naam (name) | yes | |
| E-mailadres (email address) | yes | Hiermee logt deze persoon in. — This is what this person logs in with. Must be unique |
| Rol (role) | yes | see below; default Medewerker (staff) |
| Gekoppelde medewerker (linked staff member) | no | De agendakolom en de kassalijnen van deze persoon. — This person's calendar column and point of sale lines. |
Without that link, a user has no column in the calendar and nothing can be rung up in their name. Correcting a punch is not possible either.
Cabins and chairs do not appear in that dropdown.
Wachtwoord (password)
Laat leeg om het huidige wachtwoord te behouden.
Leave empty to keep the current password.
At least eight characters, with an eye to show it. Required when creating, optional when editing — otherwise you would have to type a password for every change of name.
The roles
| Role | What the dropdown says |
|---|---|
| Zaakvoerder (owner) | everything, including figures and settings |
| Manager (manager) | everything except the salon's settings |
| Medewerker (staff) | calendar, clients and point of sale |
The role you work with in this salon is shown top left, under the salon's name: Ingelogd als Thierry · Zaakvoerder (logged in as Thierry · owner) — for a work login, Werklogin with the name on the staff record, and on a narrow screen or with the sidebar collapsed, just the role; in the till of the app on the iPad and the phone, the same sentence sits next to the salon's name.
Deliberately coarse: a salon of four does not need a permissions matrix. What someone may do on top of that — manage the till, correct punches, work schedules, reports — is set per staff member on the record under Team → Medewerkers, block Rechten (rights); see Adding a staff member. There the role is the ceiling and the default, and for a staff member that default is nothing — settling included. Everything a staff member may do is ticked per person. Anyone already on a record on 5 September 2026 keeps exactly what they had then; those ticks are now written out on the record.
One exception to that default: Afspraken wijzigen (change appointments) — moving, changing or deleting an appointment still to come — is on for everyone, also for a staff member, and can be switched off per person. Only the owner and a manager can change or delete an appointment in the past.
What is actually shielded:
- Instellingen → Koppelingen (settings → integrations) and Instellingen → Logboek (settings → audit log) are exclusively for the Zaakvoerder role. That is where the keys sit with which payments can be started, and where it says who did what with which money.
- All other settings screens require the right Instellingen van het salon (salon settings). The owner always has it; a manager only when the owner ticks it on their staff record — by default it is off, because a salon manager has no business being able to change a VAT number or a sender address. A staff member cannot get it.
The settings screens always take the salon you are currently standing in, never from the URL. There is no address with which you can open another salon's settings.
Two accounts for one person
The same staff member may have more than one account. This is meant for the device that stays on the counter: the iPad is open all day and the whole team uses it, so it should not carry an account that can open the reports, the wages and the settings.
The owner therefore keeps his own account on his phone and puts a second account on the iPad: a work login (werklogin).
Both accounts point to the same staff member, so the same calendar column and the same till lines — it is still one hairdresser.
How to create one: open the record under Team → Medewerkers (team → staff), block Accounts, and click Werklogin toevoegen (add a work login). You land on the ordinary user form, with the staff member, the role Medewerker (staff) and the Werklogin switch already filled in. The email address and the password you fill in yourself — the software does not invent one.
That button only appears once the staff member already has an ordinary account, and disappears as soon as there is a work login: one per record. In the Accounts block each row names the kind — Beheeraccount (management account) (volgt het blok Rechten op deze fiche — follows the Rechten block on this record) or Werklogin (work login) (volgt van het blok Rechten alleen de kassa en Afspraken wijzigen, en nooit een bon verwijderen — follows only the till part and Afspraken wijzigen of the Rechten block, and never deleting a receipt).
What a work login can do: what its role can do by default, plus the till ticks on the record, and not a line more. For the role Medewerker that comes down to exactly the till switches ticked on the record. Never delete a ticket, correct clock entries, open work schedules, view reports or change any setting — not even when that is ticked on the record.
On top of that comes Afspraken wijzigen (change appointments), as it stands on the record: on, unless the owner switched it off there.
Whatever you tick extra on the staff record does not apply to the work login. Those switches belong to the management account. That is exactly what a work login is for: the device on the counter stays bare, even when the owner of the record is allowed everything.
In the user list, werklogin appears underneath the calendar column, so that two rows with the same name do not read as a duplicate. An account with the role Zaakvoerder (owner) cannot be a work login: that role is allowed everything by definition.
The list
Portrait, Naam (name — with the email address underneath), Rol (role) as a badge, Agendakolom (calendar column) and Laatst ingelogd (last logged in) — or nooit (never).
Filter on Rol (role).
If there is nothing yet: Nog geen gebruikers — Maak een account aan voor iedereen die met het pakket werkt. — No users yet — Create an account for everyone who works with the software.
What you cannot do
- Delete your own account. The button is hidden on your own row: locking yourself out must not happen by accident.
- Attach an account to a salon where you are not the owner yourself. A new user automatically belongs to the salon you are standing in.
Working in two salons
If you run more than one business, you have one login for all of them. At the top, next to the salon's name, sits a dropdown with the salons your account is attached to; pick one and press Wissel (switch). The whole back office — calendar, till, clients, reports — shows that salon from then on.
Two things to know:
- Your role can differ per salon. Owner in your own business, perhaps staff at a partner's. What you may do follows the salon you are standing in, not the heaviest role you hold somewhere.
- Client records are not shared. Each salon keeps its own clients, receipts and figures. That is not a shortcoming but the law: two salons are two data controllers.
You grant an account a second salon under Werkt ook in (also works in) on the user form. Only salons where you are the owner yourself appear there, and whoever is added starts as staff; you set the role afterwards in that salon itself.
On the iPad and the phone that dropdown does not exist: there the salon is bound to the device token, and you switch by signing in again. That is deliberately the clumsier side — a receipt in the wrong salon is a tax document you cannot move afterwards.
What goes into the audit log
The creation, modification and deletion of an account, with the name, the email address, the role and the linked staff member.
And every salon switch, in the audit log of the salon you entered: "Kris kwam vanuit Kapsalon Meander in Diargo werken, als medewerker."
Not a password change. That is the deliberate price for the certainty that a password hash never ends up in a table that is kept for seven years.
Frequently asked questions
Someone gets "incorrect login details" while the password is correct. That account is then probably not attached to a salon. Check the record, or create the account again from a user who does belong to the salon.