[#342] Limit Ability to See Clients Info

Migrated from Redmine #342 | Author: Radwan LinkMentalHealth
Status: New | Priority: High, I’m very impatient | Created: 2019-02-18


Hi there,

As “admin” users on the platform, we do not want access to this information ourselves (name, email, phone number of clients). I know that enterprise model for Simplybook gives the ability to customize aspects of the platform for the client. What do we need to do on our end to request that the Admin of the account is restricted in what can be seen as well (any PHI of clients), to ensuring we are complying with HIPAA regulations in the country we operate in. It is imperative to our business and we would really appreciate a solution for this- we would be happy to collaborate to find a solution if needed.

In the meantime, I’ve taken screenshots of the parts of the code we would like to have removed on the front-end, with hopes that having a customizable domain is already part of your process for enterprise clients.

I would really appreciate help here.

Thanks in advance.

Best,

Radwan Al-Nachawati
admin@linkmentalhealth.com

Radwan LinkMentalHealth wrote:

It doesn’t look like the attachments are appearing as they constantly appear as “Not Found”, and posting images isn’t working on this site either. Please advise best course of action for pictures to showcase areas of need (i.e. if there’s an email I could send it to). Thanks.

Redmine Admin wrote:

You can put images to public hosting and provide links. File uploads are forbidden for security reasons.

Admin account cannot be restricted by system design. It is admin/company owner who always have access to everything.

You can add system users who have some limited access and use API via them. Check Admin API methods here Company administration service methods - Company administration service methods - SimplyBook.me

Radwan LinkMentalHealth wrote:

Hi,
I understand that it’s restricted by system design. Is there a way for us to be provided a customizable domain of some sort, and just have the front-end of the user interface removed?

I’ve noted out which areas we’d want to just have removed on the front-end.

Like I said, I understand it’s a tough ask, but it’s imperative and we’re really in need of this.

Redmine Admin wrote:

Ok, got it.

I think it would be better to schedule a meeting with Ingvar and discuss it there. Because it is not API related and this thread ia not right place for such discussion.

Please contact Ingvar at ingvar@simplybook.me and decide meeting time.