Domain 10 · Users, roles & audit

Self-storage user roles, permissions & audit

TheStorageControl gives staff permissions per role and per facility, separate from the customer portal and public booking. Staff can sign in with their Microsoft account. Every material action goes into the audit log with actor, action, entity, facility, IP address, result, reason and the before-and-after state.

Users and roles with assigned facilities, MFA status and last activity

Without one system

Everyone can access everything, and when something changes nobody knows who did it or why.

With TheStorageControl

Everyone sees only what belongs to their role and facility, and every change traces back to a person and a reason.

01 · Roles

Permissions per role and facility

Invite users, create roles and manage permissions separately from roles. For each user you see role, facilities, MFA status, account status and last activity.

Users and roles with assigned facilities, MFA status and last activity
01USERS, ROLES & AUDITRoles

02 · Audit log

Know who changed what, when and why

Every material action by staff, API, public flows, webhooks and scheduled jobs is recorded, with the before-and-after state and a checksum per event. Destructive actions are listed separately for extra control.

Audit log with actor, action, entity, IP address, result and the before-and-after change
02USERS, ROLES & AUDITAudit log

Features

All 18 users, roles & audit features

See all 243 features
  1. 1. Invite new users
  2. 2. Create new roles
  3. 3. Show active users and configured roles
  4. 4. Manage permissions separately from roles
  5. 5. Configure access per facility
  6. 6. Filter users by role, status and assigned facility
  7. 7. Show the assigned role per user
  8. 8. Show available facilities per user
  9. 9. Show the last-active timestamp
  10. 10. Show MFA status and account status
  11. 11. Owner and administrative workspace roles
  12. 12. Manage staff access separately from public booking and the customer portal
  13. 13. Record staff actions in the audit log
  14. 14. Filter audit events by staff and customer side
  15. 15. Record actor, action, entity, facility, IP address and result
  16. 16. Export audit data
  17. 17. Show and manage authentication-related audit events
  18. 18. Show destructive actions separately for extra control

Updated 30 September 2026

FAQ

Frequently asked questions

Can I set permissions per facility?

Yes. For each user you configure which facilities they can access, on top of their role's permissions. Staff only see data from their own facilities.

What is recorded in the audit log?

For each event: timestamp, actor, role, source, action, entity, facility, result, reason, the before-and-after state, correlation IDs and a checksum, among other things.

Does TheStorageControl support single sign-on?

Yes. Staff can sign in with their Microsoft account (Microsoft Entra ID). Roles and facilities stay with the TheStorageControl account; SSO only replaces the password step.

See your own operation in TheStorageControl.

In a demo we show the platform using your situation: your facilities, your unit mix and the way you work today.