security
Granular permissions — and an audit log to prove they work.
Every action is gated to a permission, every permission belongs to a role, every role change is logged. LodgeStatus ships with a deny-by-default policy.
Why it matters
The problem we built
this to solve.
A permission change without an audit log is a compliance gap. LodgeStatus logs every change with the principal, the role, and the timestamp.
Most PMS systems grant too many permissions by default. LodgeStatus starts deny-by-default — every escalation is intentional.
What's included
Every capability, end to end.
Custom roles with any permission combination
Grant / revoke per staff account at any time
Activity log records every change
Per-property permission scoping for chains
API token permissions (Enterprise)
FAQ
Things owners ask us.
Is the activity log searchable?
Can I scope a permission to one property?
See permissions & rbac in action.
Start a 30-day trial — all features unlocked. No credit card. Cancel anytime.
Built by Bowofade Oyerinde · Powered by Bonifade Technologies.