Docs

The full permission reference

126 permissions across 32 modules. This page is a reference to keep open while configuring a role.

August 27, 2026permission reference • permission list • permissions

What is this page?

A reference of every permission in Pashkateb — 126 permissions across 32 modules. Keep it open while configuring a new role.

The shape of a permission

module : action

The common actions:

ActionWhat it means
viewCan see the screen — without it the screen does not appear at all
addCan create a record
editCan change a record
deleteCan remove a record
submitCan submit an invoice
returnCan create a return invoice
manageFull management (on shop modules)

Master data

ModulePermissions
itemsadd · delete · edit · view
item_groupadd · delete · edit · view
brandadd · delete · edit · view
warehousesadd · delete · edit · view
warehouse_transfersadd · view
stock_adjustmentadd · delete · edit · view
customersadd · delete · edit · view
suppliersadd · delete · edit · view
shipping_companiesadd · delete · edit · view
leadadd · delete · edit · view

Transactions

ModulePermissions
sales_invoicesadd · delete_draft · edit · return · submit · view
purchase_invoicesadd · delete · delete_draft · edit · return · submit · view

delete_draft applies to drafts only. A submitted invoice cannot be deleted by any permission.

Finance

ModulePermissions
accountsadd · delete · edit · view
journal_entriesadd · edit · view
general_ledgeradd · view
payment_entryadd · delete · edit · view

Commerce

ModulePermissions
shopmanage · view
shop_catalogmanage
shop_thememanage
shop_domainmanage
shop_ordersmanage · view
shop_reviewsmanage · view
shop_promotionsmanage · view
shop_analyticsview

shop:view is the master key for reaching the commerce screens. Grant that first, then the manage permissions needed.

Reports

reports:view for general access, then one permission per report:

Inventory: stock_evaluation · stock_ledger · stock_by_warehouse · warehouse_transfer_history · low_stock_warehouse · stock_adjustment · items_need_reorder · items_prepare_production

Sales: best_selling_items · monthly_sales_summary · top_customers · most_returned_items · item_sales_period · leads_list · lead_conversion

Purchasing: monthly_purchase_summary · top_suppliers · most_purchased_items · most_purchase_returns · item_purchases_period

Financial: general_ledger · trial_balance · profit_and_loss · balance_sheet · customer_payment_ledger · supplier_payment_ledger

Logistics: orders_for_shipping

Administration

ModulePermissions
usersadd · delete · edit · view
rolesadd · delete · edit · view
companiesadd · delete · edit · register · view
integrationsadd · delete · edit · view
subscriptionsedit · view
settingsusers_view · view
aiuse

Practical tips

  • view is always the starting point. Without it the screen does not exist for that user.
  • submit is separate from add on purpose. Staff prepare drafts and someone senior submits — a common and useful arrangement.
  • Report permissions are individual so you can give each department only its own reports.
  • Start narrow and widen. Adding a permission is easier than dealing with something done wrongly.

A technical note

Some permissions — mostly the report permissions and the warehouse ones — are checked by the interface when building the menus but are not present in the permission list seeded into the database. The consequence is that they may not appear as checkboxes in the role matrix.

If a custom role needs a permission you cannot find in the matrix, contact support — that is a platform-level configuration rather than something to fix on the Roles screen.

Frequently Asked Questions

Which permission matters most in any module?

The view permission. Without it the screen does not appear in the sidebar at all, and the other permissions are pointless. Always start with view.

Why do reports have so many permissions?

Because each report has its own. That is deliberate, so you can give your accountant the financial reports without the stock reports, or a storekeeper only the stock ones.

What does delete_draft mean?

Permission to delete draft invoices only. Submitted invoices cannot be deleted by any permission — they have already affected stock and your accounts. The only way to reverse one is a return invoice.

Why do the shop permissions not all have view?

Some shop modules have manage without a separate view, because access to the screen is controlled by the general shop:view. Grant the role shop:view first, then the manage permissions it needs.

Related Links

Use Pashkateb with Your Real Workflow

Start the free trial or move to the most relevant landing page for your workflow, then apply what you read using your own invoices, stock, and reports.

Pashkateb Logo
Pashkateb

The Traditional Accountant

Pashkateb is the easy-to-use Mini ERP software designed for startups and small businesses to manage accounts, inventory, and clients efficiently.

Contact Info

admin@pashkateb.com
01555000752

© 2024 Pashkateb. All rights reserved.

Built for growing businesses.