> ## Documentation Index
> Fetch the complete documentation index at: https://docs.imaracare.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Roles and permissions

> Staff, Manager, and Administrator roles in ImaraCare — what each role can do at a facility.

ImaraCare uses **per-facility roles**. Your role applies only to the **active facility** you are working in.

## Role summary

| Capability                            |  Staff  | Manager | Administrator |
| ------------------------------------- | :-----: | :-----: | :-----------: |
| View residents                        |   Yes   |   Yes   |      Yes      |
| eMAR / med pass                       |   Yes   |   Yes   |      Yes      |
| Log incidents                         |   Yes   |   Yes   |      Yes      |
| Task manager                          |   Yes   |   Yes   |      Yes      |
| Compliance documents and HHSC reports | Limited |   Yes   |      Yes      |
| Billing and bookkeeping               |    No   |   Yes   |      Yes      |
| Invite or remove users                |    No   |    No   |      Yes      |
| Facility settings                     |    No   |    No   |      Yes      |
| Activity logs (audit)                 |    No   |    No   |      Yes      |
| CSV data import                       |    No   |   Yes   |      Yes      |

<Note>
  Administrators can **customize** which pages Managers and Staff see under **Settings → Role permissions**. The table above reflects default access.
</Note>

## Staff

Frontline caregivers typically use:

* **My Shift** — today's tasks, appointments, and shift notes
* **Residents** and **eMAR**
* **Incidents**, **Task manager**, **Calendar**, **Resources**

Staff see a simplified sidebar (flat list on desktop, bottom nav on mobile).

## Manager

Operators who run the facility day-to-day typically use:

* Everything Staff uses, plus **Staff and HR**, **Training**, full **Compliance** hub, **Finance**, **Visitors**, **Infection control**, and **Report center**

Managers can export many reports (residents, incidents, compliance) but not full audit logs.

## Administrator

Facility owners and IT leads have **full page access** plus admin-only areas:

* **Settings** — facility profile, team, subscription, Stripe Connect, security, integrations
* **Activity logs** — facility-wide audit trail and export
* **Data import** — bulk CSV import for residents, belongings, and billing

**My Shift** is hidden from the Administrator sidebar by default.

## How enforcement works

The app checks your role in three places:

1. **Navigation** — pages you cannot access are hidden
2. **Routes** — direct URLs to restricted pages show access denied
3. **Database** — server-side rules ensure you only see your facility's data

You do not need to understand the technical details — if an action fails, contact your Administrator.
