Step by Step Guide: Roles, Users, Groups and Who May See What
Nobody can enter or read data until they have an account, a role and an organisation unit. This guide builds all three, in the order that works, and ends with the rules that keep a system usable a year from now.
A user on its own can do nothing. What a person may do comes from the role, and where they may do it comes from the organisation units on their account.
| Object | Answers | Example |
|---|---|---|
| User role | What they may do | Data entry clerk: enter data, run validation |
| Organisation units | Where they may do it | Ngelehun CHC only |
| User group | Who they belong to, for sharing | Malaria programme |
| User | The person, holding all three | Fatmata Kamara |
A role is a list of authorities, and the data sets the person may enter.
Groups are how dashboards, charts and data sets are shared. Sharing to a group means the list stays right when people come and go.
| Rule | Why |
|---|---|
| One account per person | Shared accounts make the audit trail useless |
| Roles by job, not by person | Twelve clerks should share one role |
| Capture units as low as possible | A clerk needs one facility, not the district |
| Disable, do not delete | Deleting breaks the history of who entered what |
| Superuser for two people at most | It can change or delete anything |
| Share to groups, not to people | Sharing survives staff turnover |