Why access control matters
| Goal | How access control helps |
|---|---|
| Security | Protects sensitive data — member PII, financial liability, transaction records — from unauthorized access |
| Governance | The Maker-Checker workflow prevents any single person from making unilateral changes to member accounts, rule configurations, or partner onboarding |
| Compliance | Every access and action is logged in the Audit Trail, providing a non-repudiable record for auditors and regulators |
| Efficiency | Role-based permissions ensure users can complete their responsibilities without navigating unnecessary restrictions |
Accessing Access Control
Select Access Controls from the left sidebar.Modules within Access Control
Manage team
Invite users, assign roles, reset passwords, lock/unlock accounts, and create custom roles with granular permissions.
Approval workflow
Configure and manage the Maker-Checker process for point adjustments, member status changes, partner onboarding, and rule activations.
Audit trail
Review a complete, tamper-evident log of every administrative action — who, what, when, and from where.
Role structure
Loyalife comes with built-in roles for common team functions. You can also create custom roles with any combination of per-module permissions. Example role structure for a retail loyalty program:| Role | Typical permissions |
|---|---|
| Customer Support | View Members, View Transactions — no edit access |
| Marketing Manager | View and Create Campaigns, View Segments, View Communications |
| Program Admin | Full access except Access Control management |
| Compliance Officer | View Reports, View Audit Trail — read-only across all modules |
| Super Admin | All permissions including User Management and Custom Report creation |
Permission levels
For most modules, permissions follow a hierarchy:| Level | What it allows |
|---|---|
| View | Read-only access to the module — can see data but not change anything |
| Edit | Can modify existing records (includes view access) |
| Create | Can create new records, modify existing ones, and typically delete (includes view and edit) |
Maker-Checker governance
For sensitive actions — manual point adjustments, member status changes, partner onboarding — Loyalife enforces a two-step approval process:- A Maker initiates the action
- A Checker/Approver reviews and authorises it before it takes effect