SECURITY • PRIVACY • ACCOUNTABILITY
Access Control
Privacy and public-documentation notice
Security and HIPAA screens may contain workforce identity, Provider information, IP addresses, access history, support-session data, and protected health information. Screenshots in this guide use masked, redacted, or demonstration content. Unmasked content should be treated as authorized demo data only.
Purpose
Access Control determines which menus, records, and actions are available after authentication. True Care System combines user lifecycle controls, role-based permissions, Provider scope, and optional assigned-record scope.


Role Management
| Control | Effect |
|---|---|
| View | Controls whether the related parent or child menu is visible. |
| Create / Edit / Delete / Submit | Groups operational actions that modify or submit records. |
| Approve / Lock / Unlock / Export | Groups higher-impact approval, governance, and data-release actions. |
| Entire Provider | Allows the role to work across the authenticated Provider scope. |
| Assigned Homes | Limits the role to designated residential homes where supported. |
| Assigned Individuals | Limits the role to designated Individuals where supported. |
| Assigned Employees | Limits the role to designated employees where supported. |
User Lifecycle
- Create a uniquely assigned user account.
- Assign the minimum roles required for the job.
- Review status and last login.
- Modify roles when duties change.
- Reset credentials through authorized processes when required.
- Deactivate access immediately when no longer needed.
