Support access
Settings → Support Access lets an administrator with settings-write access grant a temporary support sign-in to the organization. Read-only Viewers cannot grant or revoke it.
This controls the application's support-impersonation workflow. It is not a claim that no infrastructure operator or other authorized system process can access stored data.
Grant temporary access
- Open Grant new access.
- Choose 1 hour, 24 hours, or 7 days.
- Optionally record the reason.
- Select Grant Support Access and check the grant's expiry.
Use a window appropriate to the support task. A grant allows the supported sign-in flow to enter the organization's member context, which may include client, contract, and billing information. Do not treat it as a screen-sharing-only permission.
The application shows a support-session banner during impersonation and records support sessions against the grant. Grant notifications are also attempted by email and in-app notification.
Revoke access
Select Revoke now on the active grant when it is no longer needed. New sign-ins on that grant are blocked; an existing session is checked on its next request. Expiry also ends eligibility without requiring a manual revoke.
Revocation does not undo actions already taken or retract information already viewed. Review the relevant records if support made an authorized change.
Review history
The page lists recorded support sign-ins and past grants, including identities, timestamps, and expiry/revocation state. This is an application support-access history, not a log of every possible infrastructure or data access.
A report sent through Report a Problem does not itself create a support-access grant.
