Who can use it
Every authenticated user can open the hub. Access Audit is limited to Organization Admins and System Administrators.What lives here
Access Audit is Security → Audit. It shows role assignments, effective module
grants per location, and UserPermission overlays. It is not the vendor-site password
vault — those live under Resources → Access.
Account security is on Account
Password reset, two-factor setup, trusted devices, login history, recovery contacts, notification preferences, personal data export, and account deletion are listed on Account. Open them from there.Access Audit
Organization Admins use Access Audit when someone cannot open a module they expected, or when a surveyor asks who can see member records.1
Open Access Audit
From the Security Center (Security → Audit).
2
Select the user
Review role assignments for the organization and each location.
3
Check effective grants
The view shows the union of roles at the active location plus any UserPermission
overlays.
Consent, privacy, and legal
Consent & Privacy is for cookie and data-processing preferences. Legal Documents opens the Terms of Service and Privacy Policy. These are not the same as a member’s clinical consents, which live on the member record.Troubleshooting
Related
Account
Sign-in, 2FA, sessions, and personal data.
HIPAA compliance
Security incidents and the PHI access trail.

