Decide exactly what your team can reach.
The owner controls access across roughly 20 areas of the app, from bookings and customers to reports, gift cards, and staff payments. Set sensible defaults per role, then fine-tune any individual with an Allow, Deny, or Inherit override.
Best for: businesses with admins and instructors who need day-to-day access to run classes without seeing money-sensitive areas like wages, reports, and payouts.
Least-privilege by default, opened up on purpose.
Giving every team member the keys to everything is the easy mistake: an instructor who can see revenue reports, an admin who can read everyone's wages, a new hire with access to areas they never needed. FullClass starts non-owner roles with a minimal baseline so people can do their job and nothing more until you decide otherwise.
Admins out of the box can manage bookings and customer records; staff see only the calendar and event rosters that stay on for everyone. The owner grants any other area role by role, then overrides a single person where they need an exception. Roles are reconfigurable defaults, not fixed presets, so the model bends to how your business actually runs.
Access for this user
STAFFAccess control that fits your team.
- Roughly 20 governed areas. Permissions span dashboard, bookings, customers, classes, courses, events, reports, gift cards, promo codes, staff payments, and more, each granted independently.
- Reconfigurable role defaults. Admin and staff roles ship with a least-privilege baseline you can change, not a fixed preset, so the owner decides what each role can reach.
- Per-user overrides. Set any individual to Allow, Deny, or Inherit on each area, so one person can have an exception without changing the whole role.
- Owner always has full access. The owner role is never configurable and is shown read-only, so there is always someone who can reach everything.
- Field-level redaction. Hide sensitive fields like hourly wages and customer email, phone, and address inside pages a user can already open, so an admin can manage bookings without seeing dollar amounts.
- Lock-out guard. An owner can never be denied the Users area, so they can always get back in to undo a restrictive change.
- See who can reach what. A per-area list shows the active users with effective access once role defaults and per-user overrides are combined.
- Always-on essentials. The calendar and event rosters stay available to every role, and owner-only configuration like payments, branding, and API keys is never shared.
From role defaults to the right person.
Set the role defaults
On Roles & permissions, choose which areas admins and staff can reach. The owner always keeps full access.
Invite your team
Add a user with a role, and they get a setup email to choose their own password and sign in.
Override the exceptions
On a user's profile, set Allow, Deny, or Inherit per area to grant or restrict that one person beyond their role.
Manage over time
Resend a setup email, or deactivate and restore a user, so access stays current as your team changes.
Start with roles, refine per person.
Begin by granting each role the areas it needs. When someone is the exception, override just that user, then keep wages off the staff payment and reports views for everyone who should not see them.
Related features
Give your team exactly the access they need.
Start taking bookings in minutes. Set role defaults and override the exceptions whenever you are ready.
30-day free trial · Cancel anytime