Access Management: Visual User Rights, Permissions & Record Rules
by VM Robotika UAB https://longrun.lt$ 273.03
Access rights, finally visual
See who can do what, and change it by dragging
Access management for Odoo, made visual. One board shows every access policy, every person, and every app they can reach. You grant access by dragging a person onto a policy. Click anyone to see exactly what they can view, add, edit, or delete, and where each right comes from. No more digging through access-right tables.
Runs on Odoo 16, 17, 18 and 19 · Community and Enterprise · depends only on base and web · no external dependency
Why a visual access board?
Most access-rights tools give you the same thing Odoo already has: long lists and forms. You still have to hold the whole security model in your head. This module turns that model into a picture you can read in seconds and change with your mouse.
❌ The usual way
Open a user, scroll through access-right rows, guess what each group grants, then repeat for the next person. Mistakes stay invisible until something breaks.
✅ With this module
One board. Drag a person onto a policy to grant access. Click anyone to see their real, effective rights per app, and whether each one comes from a policy or a standard Odoo group.
Key Features
🗺 Visual Access Overview
An org-chart style board of every access policy. Each card shows its status, the apps it opens up, and how many people it covers. Expand a policy to see its members: direct people and whole business groups, connected with clean lines.
The people rail on the left lists everyone, with a badge for how many active policies each person has, and a flag for anyone who has no access yet.
👀 Drag & Drop Assignment
Drag a person from the rail onto a policy card to grant access. Every change on an active policy is confirmed first, written to the audit trail, and undoable straight from the notification. Assigning is always safe, because the module only adds access and never silently strips it.
🧠 “Who Sees What” Panel
Pick any person and see their effective rights, grouped by application: what they can View, Add, Edit, or Delete, with the record scope in plain language such as “Only their own records” or “All records”. Every right is tagged with its source, either this policy or a standard Odoo group outside the module, so you always know what really grants the access.
🔑 Policies for Users and Groups
Assign an access policy directly to a user or to a business group. One policy with one clear intent, instead of scattered native access-right rows.
📊 Model Permission Matrix (CRUD)
Grant read, create, write, or delete per model: view only, view and add, or full edit. Writes standard Odoo ir.model.access.
🔍 Record Scopes
Limit which records a user sees: all, none, only their own records, allowed companies, or an advanced domain. Ideal for read-only users and multi-company setups.
🧰 Add Access Wizard
Pick the model, the allowed actions, and the visible records in one simple form. You can also edit a rule straight from the visual board. No need to know Odoo's internal security tables.
✅ Publish Workflow and Audit
A dedicated Publisher role gates publish and unpublish. Every policy action is written to an immutable, colour-coded audit. Uninstalling removes only the security objects the module created.
Built for
👤 Administrators
Onboard new hires in seconds and answer “who can see this?” with one click instead of an audit.
🤝 Odoo consultants
Set up clean, explainable access for a client and hand over a screen they can actually manage themselves.
📈 Growing teams
Keep access under control as headcount grows, without turning every permission change into a ticket.
Why you can trust it
✅ Nothing behind Odoo's back. Policies write standard ir.model.access and ir.rule records. No monkey-patching, no hidden overrides.
✅ Honest about sources. The panel always shows where a right comes from, so it never pretends a policy is the only thing granting access.
✅ Immutable audit. Every publish, unpublish, and membership change is logged and cannot be edited after the fact.
✅ Clean uninstall. Removing the module deletes only the security objects it created. Your standard Odoo access stays exactly as it was.
✅ Four Odoo versions. Maintained for Odoo 16, 17, 18 and 19, Community and Enterprise.
✅ Real support. Built and supported by VM Robotika (LONGRUN), Odoo specialists. Questions go straight to the people who wrote the code.
Screenshots
The visual access board: policies, people, and apps at a glance. Drag a person onto a policy to grant access.
“Who sees what”: effective rights per app, with the source of every right.
An access policy with its permission matrix and record scopes.
The Add Access wizard: model, actions, and visible records in one form.
Immutable, colour-coded audit of every access change.
Honest scope
This module manages model access and record rules: what data a user can read, create, edit, or delete. It uses Odoo's native additive access model, so a policy grants scoped access and cannot revoke a right that another group already gives the same user. That is why the “who sees what” panel always shows the source of every right, instead of pretending a policy is the only thing granting access.
access management · access rights manager · access rights management · user permissions · user access rights · role based security · record rules · model access · read only access · multi company access · security configuration · visual access control · drag and drop permissions
Can't find the Odoo module you need?
Contact us, we'll build it for you!
VM Robotika, UAB · Vilnius, Lithuania
| Availability |
Odoo Online
Odoo.sh
On Premise
|
| Lines of code | 5326 |
| Technical Name |
lr_access_policy_manager |
| License | OPL-1 |
| Website | https://longrun.lt |
Odoo Proprietary License v1.0 This software and associated files (the "Software") may only be used (executed, modified, executed after modifications) if you have purchased a valid license from the authors, typically via Odoo Apps, or if you have received a written agreement from the authors of the Software (see the COPYRIGHT file). You may develop Odoo modules that use the Software as a library (typically by depending on it, importing it and using its resources), but without copying any source code or material from the Software. You may distribute those modules under the license of your choice, provided that this license is compatible with the terms of the Odoo Proprietary License (For example: LGPL, MIT, or proprietary licenses similar to this one). It is forbidden to publish, distribute, sublicense, or sell copies of the Software or modified copies of the Software. The above copyright notice and this permission notice must be included in all copies or substantial portions of the Software. THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE.
Please log in to comment on this module