Administration
Included

Company Settings

Manage your company identity, workspace access, modules, billing, and security settings from one administrative area while preserving historical project and financial records.

Administration hub

  • Settings organizes company identity, team access overview, security preferences, and notification guidance for authorized Admins.

Separate deep guides

  • Users, roles, security, modules, billing, Wallet, and Custom Branding each have dedicated guides — this page orients you without repeating full workflows.

History preserved

  • Company settings changes must not delete historical projects, attendance, payroll, expenses, materials, or financial records.

Overview

Company Settings is the administration hub for workspace-wide configuration.

The current Settings page includes Company, Users, Security, and Notifications tabs. Modules, Subscription, and Wallet are separate routes linked from Settings legacy tab redirects and the main navigation.

Only authorized Admins should change company-wide settings. Changes may affect every user in the company.

Settings changes must not delete historical projects, attendance, payroll, expenses, materials, or financial records.

Some controls depend on plan limits or paid-module entitlement.

Settings navigation

Company

Company profile, login URL, identity logo, Custom Branding, and legal acceptance history.

  • Purpose: maintain workspace identity and login presentation
  • Key actions: edit business information, copy login URL, upload logo, apply Custom Branding when entitled
  • Access: Admin only for edits; non-Admins see read-only messaging
  • Guide: Company Settings (this guide)

Users

Role and access overview with a shortcut to full user administration.

  • Purpose: review active users, plan limits, and role summaries
  • Key actions: open Manage Team → /employees for create, edit, disable, and reset access
  • Access: Admin only (Settings route is Admin-only)
  • Guide: Users & Access

Security

Personal password change and per-user Email PIN 2FA toggle.

  • Purpose: manage account security preferences for the signed-in Admin
  • Key actions: change password, enable or disable Email PIN 2FA when email is verified
  • Access: available on the Settings route; route itself is Admin-only today
  • Guide: Security & Email PIN 2FA

Notifications

Read-only overview of active email alerts and in-app visibility patterns.

  • Purpose: explain what notification channels are active today
  • Key actions: informational only — configurable preferences are coming soon
  • Access: Admin only (Settings route)
  • Guide: Company Settings (this guide)

Related routes outside Settings tabs

  • Module Marketplace → /modules
  • Subscription & Billing → /subscription
  • Company Wallet → /wallet
  • Personal profile → /profile (individual account, not company-wide settings)

Who can use Company Settings

  • Role

    Admin

    Open settings

    Yes

    Edit company details

    Yes

    Manage users

    Yes

    Manage billing/modules

    Yes

    Manage security

    Yes (own account on Security tab)

  • Role

    Manager

    Open settings

    No — /settings blocked by route policy

    Edit company details

    No

    Manage users

    No — /employees blocked

    Manage billing/modules

    No

    Manage security

    No

  • Role

    Supervisor

    Open settings

    No

    Edit company details

    No

    Manage users

    No

    Manage billing/modules

    No

    Manage security

    No

  • Role

    Employee

    Open settings

    No

    Edit company details

    No

    Manage users

    No

    Manage billing/modules

    No

    Manage security

    Own password via /profile or supported auth flows only

Permission matrix

Super Admin is a platform operator role. It is not assigned by company Admins and is not part of the customer Settings workspace.

Company identity

Business Information card

Company Name

  • Required; editable by Admin
  • Official company name shown inside Prospeno

TIN

  • Optional tax identification number; editable by Admin

Address

  • Optional business address textarea
  • Used on future quotations, invoices, and reports

Contact Number

  • Optional office or business contact number

Company Email

  • Optional business email shown on future documents

Website

  • Optional company website URL

Default Currency

  • Required select; used for project values, billings, and reports

Timezone

  • Used for dates, logs, and activity records

Company Code

  • Read-only in Login URL & Company Code section
  • Used during main sign-in and to build the company login URL

Company Login URL

  • Read-only with copy control
  • Opens the branded or default company login experience at /c/{slug-or-code}

Company code and login URL

Company code

  • Short workspace identifier shown in Settings as a read-only field
  • Used by team members during main sign-in at /login
  • Not editable through the current company settings API or UI
  • Resolved case-insensitively during company login lookup

Company login URL

  • Formatted as /c/{company-code} on the current app host
  • Admins can copy it from Settings → Company → Login URL & Company Code
  • Lets users sign in without manually entering the company code
  • Custom Branding changes login appearance when that module is active
  • Invalid or unknown company URLs fail before workspace access continues
  • Users can still use the general /login page with the company code.
  • Logout behavior preserves the remembered company slug or code for the next sign-in when the login flow stored it.
  • Branding accents and welcome messaging appear only for valid active companies with Custom Branding applied.

General company information

Company Profile and contact fields

  • Company Name, TIN, Address, Contact Number, Company Email, and Website live in Business Information
  • Default Currency and Timezone live under Regional Preferences
  • These are operational company preferences, not billing contact overrides

Not in Company Settings

  • Payroll overtime and deduction defaults → Salaries & Payroll module settings
  • Materials cost recognition → Materials module settings
  • Email PIN 2FA and password change → Security tab (see Security & Email PIN 2FA guide)
  • Subscription plan and invoices → /subscription
  • Wallet balance → /wallet

Saving changes

  1. 1

    Open the relevant Settings area

    Choose Company, Users, Security, or Notifications, or open a linked route such as /modules.

  2. 2

    Review current values

    Read-only fields such as Company Code and Company Login URL cannot be edited here.

  3. 3

    Edit permitted fields

    Only Admins can edit company-wide fields on the Company tab.

  4. 4

    Resolve validation errors

    Required Company Name, branding welcome-message length, and logo dimension checks must pass before save.

  5. 5

    Save the changes

    Business Information uses an explicit Save Company Settings button — there is no autosave on the Company tab.

  6. 6

    Confirm updated values

    Success shows “Company settings saved.” Branding apply actions show their own success copy and refresh workspace caches.

  • Errors display in-form banners such as “Unable to save company settings.”
  • There is no unsaved-changes browser warning on the current Settings forms.
  • Cancel is implicit — navigate away without saving to discard unsaved Business Information edits.

Users and access

Where to manage users

  • Settings → Users tab summarizes active users and links to Manage Team → /employees
  • Only Admins can open /employees and perform user administration
  • Plan limit metrics show the current employee limit for the company plan
  • Disabling a user preserves historical attendance, expenses, payroll, and assignment records

Creating a user does not automatically configure their rate or project assignments.

Roles and permissions

How roles relate to settings

  • Company role controls general capability across the workspace
  • Project assignment narrows which projects non-Admin users may access
  • Module entitlement controls optional paid workflows such as Materials or Custom Branding
  • Record status and approvals may still block an action after role checks pass
  • Admin is the primary role for company-wide settings, billing routes, and user administration

Security settings

Settings → Security tab

  • Change password for the signed-in account
  • Enable or disable Email PIN 2FA per user when the registered email is verified
  • View last sign-in timestamp when available
  • Company login URL and company code are managed on the Company tab, not here

Kiosk Attendance PIN is a separate four-digit employee attendance identifier — not account security. See the Kiosk Attendance guide.

Modules

Module Marketplace

  • Open /modules to review included core platform features and paid add-ons
  • Activation is Admin-only and may require an eligible paid plan plus available Wallet balance
  • Modules can be Active, Cancelling, or Expired according to entitlement state
  • Historical operational records remain after a module expires — future actions may be blocked or read-only

Subscription and billing

Subscription workspace

  • Open /subscription to review the current plan, limits, renewal state, and billing actions
  • Plan limits can block new users, projects, or other capacity-sensitive actions
  • Wallet provides billing credits for eligible upgrades and paid-module charges
  • Downgrade, cancellation, or expiry should restrict future activity without deleting existing records

Company Wallet

Wallet boundary

  • Wallet is Prospeno billing credit — not company cash-on-hand
  • Wallet is not a Budget Release and has no project-profit effect
  • Only approved, available credits are spendable on supported billing actions
  • Open /wallet from navigation or legacy Settings tab redirects

Custom Branding

Paid-module branding controls

  • Requires the Custom Branding module to be active before Apply Branding is available
  • Company identity logo upload is separate from branding activation
  • Controls include accent color presets, welcome message, and login branding enablement
  • Applies to the company login page, workspace sidebar, and approved web primary surfaces
  • Prospeno attribution remains — Custom Branding is not full white-labeling
  • Cancellation or expiry reverts to default presentation while preserving stored identity assets

Plan and module restrictions

  • Some Settings controls appear only when the plan or module permits them
  • Inactive modules may show locked panels or read-only messaging
  • Plan limits may block new users, projects, locations, or other capacity-sensitive actions
  • Downgrade or module expiry should restrict future activity without deleting historical records
  • Platform plan definitions and commercial limits remain Super Admin–managed at the platform level

Company status

Customer-visible access effects

  • Inactive company (is_active = false): sign-in is blocked even with valid credentials
  • Disabled user: profile preserved; sign-in and workspace access blocked
  • Subscription restricted or expired: commercial limits and module entitlement may block new actions — see Subscription & Billing guide
  • Reactivation and billing recovery are controlled through Admin actions or Prospeno support where applicable
  • Historical project, labor, expense, and financial records remain preserved

Audit and historical protection

Visible or retained change history

  • Legal & Agreements section shows read-only company legal acceptance records for Admins
  • User disable, role change, and access reset events are retained in operational records — see Users & Access guide
  • Module activation, cancellation, and Wallet charges appear in Module Marketplace and Wallet activity
  • Email PIN 2FA enable/disable is controlled per user — see Security & Email PIN 2FA guide
  • There is no single customer-facing security audit dashboard for every settings change

Settings boundaries

Company Settings

  • Workspace-wide configuration at /settings and linked Admin routes
  • Company identity, users overview, security preferences, notifications guidance

Personal account settings

  • /profile or /my-work/profile for the signed-in user
  • Not a substitute for company-wide administration

Project settings

  • Project Command Center and project-specific tabs
  • Affect one project only

Super Admin settings

  • Platform operator tools outside the customer workspace
  • Not available to company Admins

Secondary details

Company code changes

The company code is read-only in the current Settings UI and company PATCH API. Changing it would require platform support — do not assume Admins can edit it.

Logo replacement and reset

Upload a new PNG or WebP file to replace the stored identity logo. There is no separate remove action in the current UI.

Timezone and date behavior

Company timezone is editable by Admins under Regional Preferences and is used for dates, logs, and activity records.

Settings validation
  • Company Name is required on save
  • Branding welcome message must stay within the configured character limit before Apply Branding
  • Logo uploads must pass file type, size, and dimension validation
  • API errors return user-safe messages without exposing internal details
Module expiry

Expired paid modules lock branding and module workflows while preserving historical records. Re-activate from Module Marketplace when eligible.

Company deactivation

Inactive companies cannot sign in. Recovery requires platform or billing intervention — contact Prospeno support when Admins cannot restore access.

Important limitations

  • Company Settings is primarily Admin-only.
  • Not every company field may be editable.
  • The company code is read-only after creation in the current implementation.
  • Company identity logo and Custom Branding are separate concepts.
  • User creation does not configure rates or project assignments automatically.
  • Role permission and module entitlement are separate.
  • Wallet balance does not determine the company plan by itself.
  • Module cancellation or expiry must not delete historical records.
  • Some changes may require users to refresh or sign in again.
  • Platform-level plan and limit controls remain Super Admin–managed.
  • Company Settings does not replace formal accounting, HR, or security administration systems.

Where to find help

Use the ? button in the web application for the current page guide, Getting Started, Module Guides, and Contact Support.

Related links

Jump to the module, marketplace, or broader help resources.

Company Settings Guide — Prospeno Docs