Fund Authorization and Security settings control how users authenticate, how sessions are managed, and who can access accounting features.
Security settings
Multi-Factor Authentication (MFA)
Turns on MFA as a requirement for all accounting users. Every person who logs into Edlio Accounting must complete a second authentication factor beyond their password.
Session Timeout
Sessions automatically time out after a selected amount of minutes of inactivity. If a user steps away from their desk, the system logs them out to prevent unauthorized access to financial data.
Fund authorization
Fund authorization controls which users can access accounting features. This is where you designate who can interact with funds and transactions.
> Note: In the current build, the fund authorization page shows placeholder role examples (e.g., "John Smith as bookkeeper," "Jane Doe as principal"). This page is not yet fully activated — user and permission management is expected to be implemented in a future update.
Role-based permissions
Each role has a defined set of capabilities:
| Role | Capabilities |
| Bookkeeper | Post transactions, view reports, manage funds |
| Principal | Approve transactions, view reports, manage funds |
| CFO | Approve transactions, view reports, manage funds, manage settings |
Bookkeepers handle day-to-day transaction posting. Principals approve transactions and oversee fund management. CFOs have full access including settings management.
> Note: Whether the superintendent should have "manage settings" access is still being reviewed. The current configuration may change before final release.