Roles & Permissions

Kidago controls staff and device access with roles. A role is a reusable set of permissions; a user or device may have more than one role.

Built-in roles

Every organization starts with:

  • Administrator — full access to the organization’s account
  • Teacher — child and guardian lookup, attendance, incident entry, medication administration, and room visibility
  • Front Desk — Teacher access plus guardian and registration intake work
  • Check-in Tablet — minimum child, guardian, attendance, emergency-contact, and medical access for a shared device

Built-in roles cannot be renamed or deleted, but an administrator can edit their permission grids. Review changes carefully because they affect everyone and every device assigned that role.

Add staff

Go to Users and select Add User. Enter the person’s name and email, choose how their account will be activated, and assign one or more roles. Pending invitations can be resent or revoked.

From the row actions you can update details, manage roles, suspend or reactivate access, or delete the user. Suspension is the safer choice when access may be needed again.

Manage roles

Only organization administrators can open Roles. They can create a role with a clear job-based name and description, then select permissions by resource and action. Custom roles can be edited or deleted; built-in roles are protected.

Permissions cover children, guardians, visits, billing, registration links and requests, reports, emergency contacts, incidents, medical records, and rooms. Sensitive actions such as correcting attendance, changing medical authorization, administering medication, and deleting records are separate grants.

  • Give each person the least access needed for their work.
  • Use Check-in Tablet for kiosks, not staff accounts.
  • Reserve attendance correction, billing, medical changes, incident signing, and deletion for trusted staff.
  • Suspend departed staff promptly and review assignments regularly.

Guardian permissions are separate; see Children & Guardians. Device setup is covered in Device Management.