Team access
Staff roles and permissions that actually hold
Give every team member their own login and the right level of access. When someone leaves, remove them in one step and their access ends straight away.
Team access
Invite by emailAmna S.
amna@democlinic.example
Omar K.
omar@democlinic.example
Front desk
desk@democlinic.example
Access rules are enforced by the database, not just hidden buttons.
One shared password is a quiet risk
Many clinics run their booking tool on a single login that half the team knows. It feels convenient until the day it isn't.
Everyone can change everything
A new receptionist edits a treatment price by mistake. With one shared account, nobody can say who did it or stop it happening again.
Leavers who still have the password
A staff member moves on. Changing the shared password means telling everyone else the new one, so it often doesn't get changed at all.
Hidden buttons aren't protection
Some tools simply hide menu items from junior staff. The data underneath is still reachable by anyone who knows where to look.
How it works
Give access in three short steps
Team access lives in the admin panel. An admin can set up a new colleague in the time it takes to write their email address.
Invite by email
Enter the team member's email address. They receive an invitation and set up their own login, so no password is ever shared.
Choose a role
Pick admin, manager or staff. The role decides which parts of the panel and which data that person can reach.
Remove access when it's time
When someone leaves or changes jobs, remove their access from the same screen. It takes effect instantly.
Team access
Invite by emailAmna S.
amna@democlinic.example
Omar K.
omar@democlinic.example
Front desk
desk@democlinic.example
Access rules are enforced by the database, not just hidden buttons.
Three roles, matched to how clinics work
Every person on your team gets one of three roles: admin, manager or staff. Each role sees only what it's allowed to, so people get the tools for their job without access to everything else.
In general terms, admins look after the clinic's settings and decide who has access. The other roles are for the people running the day, with access sized to their responsibilities. During setup, we'll talk through who on your team should hold which role.
Enforced by the database, not the screen
Plenty of software controls access by hiding buttons. The data is still there; the menu just doesn't show it. That is a thin layer of protection.
Velvet Lead is built on a Postgres database with row-level security, provided through Supabase. The rules about who can see what are checked by the database itself on every request. If a role isn't allowed to see something, the database doesn't return it, whatever the screen shows.
On top of that, each clinic has its own separate database. Your patients' details and enquiries aren't stored alongside another clinic's data.
Invitations instead of shared passwords
Each team member signs in as themselves. There's no clinic-wide password on a sticky note at reception, and no need to change it every time the team changes.
Personal logins also make daily work clearer. Leads can be assigned to a named team member, and the activity history on each lead shows the work done on it.
Instant removal when someone leaves
Staff turnover is normal in clinics. Receptionists move on, locum practitioners finish a contract, a marketing assistant only helps for a season.
When someone's time with you ends, remove their access in the admin panel. It stops straight away. Nobody else's login is affected, and you don't have to reset anything for the rest of the team.
Why this matters for patient trust
Your booking system holds names, phone numbers, email addresses, appointment history and marketing consent records. Patients expect that only the right people at your clinic can see those details.
Clear roles, personal logins and database-level rules are a sensible foundation. They don't replace your own clinic policies, but they make those policies far easier to follow. You can read more on our security page.
Team access in different kinds of clinics
A dermatology clinic might give its practice manager a manager role and its front desk team staff access, while the owning doctor stays admin. A dental clinic with rotating associates can add and remove people as rotas change.
A cosmetic surgery practice often has patient coordinators handling enquiries; each can have their own login with leads assigned to them by name. A private doctor's practice with a small team still benefits from personal logins rather than one shared account.
Honest limits
What team access doesn't cover
Roles protect the booking and enquiry data in your admin panel. Here are the boundaries.
- Three fixed roles: admin, manager and staff. You can't create custom roles or set permissions person by person.
- No clinical records. There's no EMR or EHR, clinical notes or prescriptions, so roles don't govern clinical data.
- For US practices: Velvet Lead is built for appointment booking and enquiries, not clinical records. Practices that need a HIPAA Business Associate Agreement should talk to our team first.
- One location per website. Staff access applies to that one clinic, not to a group of branches.
Built for clinics like yours
- Dermatology clinics Medical and cosmetic appointments, doctor schedules and consultations
- Dental clinics Check-ups, whitening and aligner consultations booked online
- Cosmetic surgery practices Consultation requests, careful follow-up and a gallery with consent
- Private doctors Private GPs and single-specialist practices
FAQ
Questions clinics ask
How do I add a new team member?
In the admin panel, invite them by email and choose a role: admin, manager or staff. They set up their own login from the invitation, so you never have to share a password.
What can each role see?
Each role sees only what it's allowed to. Broadly, admins manage the clinic's settings and team access, while the other roles are for day-to-day work. We'll walk through the details with you during setup and training.
What happens when a staff member leaves?
Remove their access in the admin panel and it ends instantly. Other team members keep working as normal, with no shared password to change.
Is access really enforced, or just hidden in the menu?
It's enforced by the database. Velvet Lead uses a Postgres database with row-level security through Supabase, so data a role isn't allowed to see is never returned to that person.
Can I create a custom role for one person?
Not currently. There are three roles: admin, manager and staff. Choose the one closest to each person's job.
We're a US practice. What about HIPAA?
Velvet Lead is built for appointment booking and enquiries, not clinical records. If your practice needs a HIPAA Business Associate Agreement, please talk to our team before you sign up.
See roles and invitations in action
Book a demo and we'll show you how to invite a team member, choose a role and remove access on our demo clinic.