Records & Access
Every action in ExciseOS is timestamped and attributed to the person who did it. Submitted records are permanent. Role-based access means each person sees only what they need. No notebooks. No ambiguity.
Immutable records · Role-based access · Full action trail
Immutable Records
Submitted closings, approved stock entries, and logged expenses cannot be edited or deleted — by anyone, including the owner. Every attempt to modify is logged. This is what makes the audit trail trustworthy.
The only way to correct an error is to log a correction entry — which itself is timestamped and attributed.
Role Separation
Managers can log closings and stock entries. They cannot see P&L, partner data, or other managers' scorecards. Owners see everything. Partners see only their view.
This separation is built into every screen and every data query — not just a UI toggle.
Correction Flow
In ExciseOS, submitted records are permanent. If an entry has an error — wrong quantity, wrong amount — you don't edit it. You log a correction entry. The original stands. The correction stands next to it. Both are attributed and timestamped. The full chain of events is always visible.
Access Design
Role separation in ExciseOS isn't just UI-level. Each role's data access is enforced at the database level. A manager's session cannot query partner or finance data — not because a menu item is hidden, but because the query is rejected.