Skip to content

PRD: Merchant User Administration (Back Office)

ModuleUser ManagementPRD IDPRD-EMP-002
StatusReady to devFEATEMP · BANA-1435
EpicBANA-1336PlaneBANA-1737
Date2026-06-30Versionv1.0
Packages@nx/identityURDEMP
SurfaceBO · Ops
OwnerPhát Nguyễn

What Merchant User Administration (Back Office) is

A merchant owner can manage their own employees from the Client app (Employee management). But the operations team also needs to manage merchant users across all merchants from the Back Office - to provision staff for a client during onboarding, fix an assignment, reset access, or lock someone out - without being the owner and without a database edit.

This increment is that operator surface: a cross-merchant merchant-user admin that does what an owner does for their own staff, but for the operations team, scoped by the operator's role. It sits beside internal operations-staff administration (which manages our own internal staff); this screen manages merchants' users.

One merchant user, from creation to lock

StepWhat happens
1. FindAn operator opens the cross-merchant list, searches or filters by organizer/merchant/role/status
2. CreateCreate a merchant user with their own sign-in credentials
3. AssignAssign the user to an organizer and one merchant, with one or more roles
4. OperateEdit the profile; lock or unlock the account when needed
5. Moving towardAssigning one user to multiple merchants, full-set reassignment, and removal outright (🚧, see §5)

Where it's easy to get wrong

Creating a user is not yet one complete transaction

Creating a user currently happens in several sequential steps - create the account, then grant the organizer/merchant. If a step fails mid-way and the operator changes the merchant before retrying, the user can end up in both merchants; leaving the page mid-way and re-submitting can create a duplicate user.

Proprietary and Confidential. Unauthorized copying, distribution, or use of this software is strictly prohibited.