User Management
Admins manage the whole team from Settings → Users: inviting new people, assigning roles, configuring their notifications, and resetting passwords. Everything on this page is admin-only.
For what each role can and can't do, see Authentication — User Roles. For changing your own password (any role), see the same page.
Inviting a User
Click Invite User at the top of the Users table.
| Field | Required | Notes |
|---|---|---|
| Yes | Used to log in — must be unique | |
| Full name | Yes | Displayed throughout the dashboard |
| Role | Yes | Admin, Safety Officer, or Viewer |
| Password | Optional | Set one yourself, or leave blank and Lokawatch generates a temporary password and emails it to them |
| WhatsApp number | Optional | Needed if this person should get WhatsApp alerts (can be added later) |
Leaving the password blank is usually the better option — the new user gets their own temporary password by email and can change it themselves on first login, so you never have to know or share it.
Changing a User's Role
In the Users table, each row has a role dropdown — change it directly, no separate save step.
Activating & Deactivating Users
Click the lock icon on a user's row to deactivate them — they're immediately signed out everywhere and can no longer log in, but their account and history are kept. Click again to reactivate. You cannot deactivate your own account.
Per-User Notification Settings
Click the gear icon on a user's row to open their notification settings:
- Email alerts — on or off
- WhatsApp alerts — on or off (requires a WhatsApp number to be set first)
- WhatsApp number — add or update it here
Setting or Resetting a Password
Click the key icon on a user's row. A dialog offers two options:
| Option | What happens |
|---|---|
| Set Password | Type an exact new password (min. 8 characters) and confirm it. Takes effect immediately — tell the user their new password directly. |
| "Or email them a temporary password instead" (link at the bottom of the same dialog) | Generates a random password and emails it to the user automatically — you never see or handle the password yourself. |
Either option immediately invalidates the user's old password. The email option depends on your server's email delivery being configured — if it isn't, the user won't receive anything, so Set Password is the more reliable fallback.