Navigation Menu Permissions

mugwort13 wrote on Wednesday, April 28, 2010:

Hello,

I have a question about the navigation menu (in tree view).   I am understanding how to use the ACL options the restrict what people can see.  However, I seem to find one giant flaw.  

I can restrict access to anyone I choose as far as the patient info or billing info is concerned.   These are restrictions are pointless because those same people can see all patient demographics and billing info via the “Reports” and “Miscellaneous” menus.    Using “superbill” or “chart tracker” or “Encounters”, etc. even the most restricted users can see all. 

Is there a way to make these navigation trees disappear for certain users?  (I’m sure there is because the Administration menu hides from normal users)

I have read some other posts on permissions in the navigation menu, but none seem to be the same issue I am asking about.

Thank you,
-Jeremy

bradymiller wrote on Thursday, April 29, 2010:

hi,

It would be nice to secure the reports and would likely require some more aco’s. Also note to be secure, it’s important to not only hide the link in the tree menu, but also secure the actual script itself (ie. put the acl check at the top of the script also), so users don’t simply type the address to the script/report in the browser address.

-brady