Security & Governance
Security in Yess ERP is enforced at the database layer, not just the interface — so access rules hold no matter how the data is requested.
Every table enforces database-level policies, so a user can only read rows their role and company allow.
Custom roles define module-by-module access. Server endpoints re-verify permission and reject unauthorised calls.
Creates, edits and deletes are captured with before/after values, actor and timestamp — exportable to CSV and PDF.
Approval workflows and delegation rules keep initiation, approval and posting in different hands.
All traffic runs over TLS and data at rest is encrypted by the managed cloud platform.
Automated daily backups with point-in-time restore on business and enterprise plans.
Administrators can review active users, disable accounts instantly and track privileged actions.
Email verification, password strength enforcement, password reset and optional social sign-in.