FAQ — Access & Roles
import { Aside } from ‘@astrojs/starlight/components’;
Cannot open Sale
Section titled “Cannot open Sale”Cause: The employee account is missing the pos or order write module.
Fix (store owner):
- Sign in to vendor web with the owner account.
- Open Employees → Roles → edit the employee’s role.
- Enable the POS write module (or
orderwrite for the dashboard POS). - Save — the employee should sign out and sign back in to apply.
See: Roles (Vendor).
Access Denied (403)
Section titled “Access Denied (403)”Cause: The route requires a module not present in your profile.modules.
Fix:
| Screen | Module needed | Action |
|---|---|---|
/point-of-sale/sale | pos write | Ask owner to enable POS write on the role |
/point-of-sale/orders | order read | Ask owner to enable Order read |
/point-of-sale/customers | customer read | Ask owner to enable Customer read |
/point-of-sale/returns | order write | Ask owner to enable Order write |
/point-of-sale/settings/* | settings write | Ask owner to enable Settings write |
Note: The store owner usually passes every POS route (because they have settings + pos write).
See: Sign in & access.
Customers tab missing
Section titled “Customers tab missing”Cause: The role is missing customer read in profile.modules.
Fix: Ask the owner to enable the Customer (read) module in Employees → Roles. Then sign out / sign in to apply.
Settings opens but device save fails
Section titled “Settings opens but device save fails”Cause: Opening Settings needs settings read (any employee has it), but saving CRUD needs settings write or pos write.
Fix:
- Ask the owner to check the role has both:
settingsread +settings/poswrite. - In practice, only the store owner should configure hardware.
Employee cannot switch store
Section titled “Employee cannot switch store”Cause: The employee belongs to only one store in the system (profile.store_id is fixed).
Fix:
- If the employee genuinely works at multiple branches: the owner must assign more
store_idvalues in Employees → Detail → Stores. - If the employee only works at one store: this is the correct configuration; no change needed.
See: Employees & stores.
Still stuck?
Section titled “Still stuck?”Send to the store owner — they can adjust the role. If the owner is also blocked, contact support@lionpos.com.
Test scenarios (internal QA)
Section titled “Test scenarios (internal QA)”| ID | Scenario |
|---|---|
P3 | Employees without pos / order write cannot open Sale |
TC-PS2-003 | Accessing an out-of-tenancy store → 403 on API |