Odoo 18 Community & Enterprise - Security App - Tecspek
Ultimate Access Control Pro
One Access Profile to control menus, models, fields, domains, buttons, search views, chatter, export/import and login - assigned by Users and/or Security Groups, with optional company and date range. Configure without coding. Simulate before go-live. Audit every change.
By Tecspek | www.tecspek.in | help.tecspek@gmail.com
Why Ultimate Access Control Pro?
Standard Odoo groups are powerful but not enough when you need per-user UI hide, field-level rules, chatter limits, export blocks, and temporary access - without writing custom modules for every request.
One Profile, Many Controls
Hide menus, restrict CRUD, make fields invisible/readonly, limit records with domains, hide buttons/tabs, clean search menus, and control chatter - all from one Access Profile form.
Users, Groups & Companies
Assign by Users and/or Security Groups. Scope by company and Valid From/To dates. Priority resolves overlapping profiles predictably.
Simulate Before Go-Live
Preview Read/Create/Write/Delete for a user and model, detect conflicts, and track every profile change in Audit Logs.
How Access Profiles Work
Create one profile, assign who it applies to, then configure each access layer in dedicated tabs.
Step 1 - Assign who: Add Users and/or Security Groups. Optionally limit Companies and Valid From / To.
Step 2 - Optional switches: Read-Only user, Disable Developer Mode, Priority (higher wins on overlap).
Step 3 - Configure tabs: Hide Menu, Model Access, Field Access, Domain Access, Button/Tab, Search, Chatter, Global.
Step 4 - Simulate: Preview Read / Create / Write / Delete for a user + model before production.
Step 5 - Audit: Every profile create/update is logged with who changed what.
User Group Access
Once access is granted to a user, they can manage access rights for all applications.
Access Profile Form
Header + Users/Groups + all configuration tabs
Users / Groups Assignment
Users, Security Groups, Companies, Priority
Hide Menu Tab
Hide menus and submenus for matched users
Model Access Tab
Hide Create/Edit/Delete/Export/Archive/Duplicate/Import/Actions/Reports and List/Form/Kanban views
Model Read-Only,Deny Read
Field Access Tab
Invisible, Readonly, Required,Remove External Link,Disable Create,Disable Create & Edit, many2one options
Domain Access Tab
Soft restrict domains and CRUD limits
Button / Tab Access
Hide buttons, notebook pages, kanban links
Filter & Group By Restrictions
Hide Filters, Group By, Favorites, Search Panel, Specific Filter Names, Specific Group By Names
Chatter Access Tab
Hide Send Message, Log Note, Activities
Global Tab
Global hide import/export, chatter, disable login
Simulate Access Wizard
Preview Allowed / Denied with matched profiles
Audit Logs
Who changed which profile and when
User, Group & Company Assignment
Users
Assign specific Odoo users (e.g. Mitchell Admin). Ideal for exceptions and VIP accounts.
Security Groups
Assign by role (Sales / Inventory / Accounting). Scale rules to whole teams.
Companies
Leave empty = all companies. If set, applies only when that company is selected top-right.
Valid From / To
Temporary access windows for contractors, audits, or seasonal staff.
Priority
When multiple profiles match, higher priority is evaluated first.
Read-Only & Debug
Read-Only blocks Create/Edit/Delete. Disable Developer Mode clears debug for matched users.
Feature Modules (All Tabs)
Hide Menu
Hide root apps and nested menus. Enable Hide Submenus to hide all children.
Model Access
Model Read-Only, Deny Read, Hide Create/Edit/Delete, Archive, Duplicate, Export/Import, Actions/Reports, List/Form/Kanban views.
Field Access
Invisible, Readonly, Required, Remove External Link, Disable Create, Disable Create & Edit.
Domain Access
Soft Restrict filters lists. Hard flags restrict Create/Edit/Delete/Read. Domain e.g. [('user_id','=',uid)].
Button / Tab Access
Hide Button/Action, Notebook Tab/Page, or Kanban Link by technical name (e.g. action_confirm).
Search Restrictions
Hide Filters / Group By / Favorites / Search Panel, or specific filter and group-by names.
Chatter Controls
Hide Chatter, Send Message, Log Note, and Activities per model.
Global Options
Hide Chatter/Import/Export globally. Disable Login. Internal admin notes.
Simulate & Audit
Simulate Allowed/Denied/Default ACL with conflict detection. Full audit trail of profile changes.
Complete Feature List
- Access Profiles with Priority and Active/Archive
- Assign by Users and/or Security Groups
- Multi-company scope (empty = all companies)
- Valid From / Valid To date windows
- Read-Only user mode
- Disable Developer Mode
- Hide menus and root app icons
- Hide Submenus option
- Model Read-Only / Deny Read
- Hide Create, Edit, Delete
- Hide Archive, Duplicate, Import, Export
- Hide Actions and Reports toolbars
- Hide List / Form / Kanban views
- Field Invisible / Readonly / Required
- Many2one no_open / no_create / no_create_edit
- Domain Soft Restrict + hard CRUD flags
- Hide buttons, notebook tabs, kanban links
- Hide Filters / Group By / Favorites / Search Panel
- Specific filter & group-by names
- Hide Chatter / Send Message / Log Note / Activities
- Global hide import/export/chatter
- Disable Login for matched users
- Simulate Access wizard + conflict detection
- Audit Logs for profile create/write/unlink
- Export blocked server-side when restricted
Install & Requirements
Compatible with
Odoo 18.0 Community and Enterprise. Depends on base, web, mail.
Install
Apps â Update Apps List â search Ultimate Access Control Pro â Install. Or upgrade tecspek_access_control_pro.
Rights
Configuration requires Access Control Pro / Administrator (Settings users inherit it).
Odoo access control, Odoo hide menu, Odoo field access rights, Odoo model ACL, Odoo restrict export, Odoo hide button, Odoo hide notebook tab, Odoo chatter restrict, Odoo search favorites hide, Odoo domain soft restrict, Odoo access profile, Odoo simulate permissions, Odoo security audit log, Odoo user group company access rules, Tecspek Ultimate Access Control Pro, tecspek_access_control_pro, Odoo 18 access management, Odoo readonly user, Odoo disable developer mode.
Ready to secure your Odoo without custom code?
Install Ultimate Access Control Pro by Tecspek and manage access with profiles, simulation, and audit.
www.tecspek.in - help.tecspek@gmail.com
| Availability |
Odoo Online
Odoo.sh
On Premise
|
| Odoo Apps Dependencies |
Discuss (mail)
|
| Lines of code | 1640 |
| Technical Name |
tecspek_access_control_pro |
| License | OPL-1 |
| Website | https://www.tecspek.in |
Odoo Proprietary License v1.0 This software and associated files (the "Software") may only be used (executed, modified, executed after modifications) if you have purchased a valid license from the authors, typically via Odoo Apps, or if you have received a written agreement from the authors of the Software (see the COPYRIGHT file). You may develop Odoo modules that use the Software as a library (typically by depending on it, importing it and using its resources), but without copying any source code or material from the Software. You may distribute those modules under the license of your choice, provided that this license is compatible with the terms of the Odoo Proprietary License (For example: LGPL, MIT, or proprietary licenses similar to this one). It is forbidden to publish, distribute, sublicense, or sell copies of the Software or modified copies of the Software. The above copyright notice and this permission notice must be included in all copies or substantial portions of the Software. THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE.
Please log in to comment on this module