Skip to content
Team & account

Team members, roles and permissions

Add pharmacy staff to MediPOS, give each person a role per branch, set a discount limit, create custom roles and disable someone who leaves.

Every person who works in your pharmacy should have their own MediPOS login, so each bill, discount and stock change carries a name. The Team screen adds staff and decides what each person may do, and in which branch. The Roles screen controls pharmacy staff permissions: what a cashier, pharmacist or manager is allowed to touch.

How to add a team member

  1. Open Administration → Team and click Add team member.
  2. Under Account, enter the Full name and at least one of Mobile number or Email (optional). Counter staff often have no email, so a mobile number is enough.
  3. Enter a Starting password and give it to them in person.
  4. Under Roles, choose a role and a branch. Leave the branch on All branches if the role applies everywhere. Click Add another role for a second role.
  5. Under Counter limits, set Opens in branch and, if you want, Max discount (%).
  6. Click Add to team.

They sign in with their mobile number or email and the password. If the number or email already belongs to someone who uses MediPOS, for example a pharmacist who also works at another store, their existing account is added to your pharmacy and no new password is needed. After sign-in they see Choose a pharmacy and pick yours.

The built-in roles

Every new pharmacy gets these roles. You can use them as they are.

RoleMeant forWhat it allows
OwnerThe person who signed upEverything, including billing and users. It cannot be edited or given to anyone else.
AdminA partner or trusted managerEverything except managing roles and backups
ManagerThe person running a branchSales, discounts, price changes at the POS, voids, returns, purchases, stock, supplier payments, reports with profit, and the audit log
PharmacistQualified counter staffCashier work plus discounts, choosing a batch, sale returns and stock counts
CashierCounter billingPOS billing, reprints, customers and their payments, viewing stock, and their own shift
Purchase managerWhoever deals with distributorsSuppliers, purchase bills, returns to supplier and supplier payments
AccountantBooks and expensesCash book, ledgers, journal entries, expenses and profit reports
Inventory managerThe stock roomProducts, stock adjustments, counts and transfers

Note that the built-in Cashier cannot give discounts. That needs the Give discounts permission.

How roles work per branch

A role can apply to all branches or to one. Say Nadeem is Manager at your Main branch and fills in as Cashier at Model Town. On the Team list his badges read Manager · MAIN and Cashier · MTN. In Model Town he can bill but cannot void a sale. A person's permissions in a branch are all their all-branch roles plus the roles given for that branch. On the Offline edition there is one branch, so leave the branch on All branches.

How to set a discount limit

Max discount (%) caps what one person can give, on a single line or on the whole bill. If Sana's limit is 5% and she tries 10% on Haji Aslam's bill, the POS refuses with Your discount limit is 5%. Ask a manager for more. Leave the field empty for no personal limit. The limit only matters if one of the person's roles includes Give discounts.

A cashier asking for more than their limit does not need to wait for you: a supervisor who may give it approves it on the cashier's screen with their PIN. See Counter PIN sign-in and supervisor approval.

How to create a custom role

  1. Open Administration → Roles and click New role.
  2. Enter a Role name, such as Night cashier, and a short Description.
  3. Tick permissions. They are grouped under Sales & POS, Customers, Inventory, Purchasing, Money, Reports and Administration, and each group has Select all and Clear all. Permissions marked Sensitive, such as Void invoices, Change selling price at POS, Backdate sales and Adjust stock, deserve a second thought.
  4. Click Create role, then give the role to people on the Team screen.

You can also Edit a built-in role, such as removing Reprint receipts from Cashier. The change applies to everyone who holds that role. A role can be deleted only when nobody holds it; otherwise MediPOS says This role is assigned to team members. Reassign them first.

If Roles is not in your menu, your plan does not include custom roles, and the built-in roles are used as they are. The owner can see what each plan includes under Plan & billing.

How to disable someone who leaves

On the Team list, click Disable next to the person and confirm. They are signed out and cannot use your pharmacy until you click Enable. Their past bills, returns and shifts keep their name. You cannot disable the Owner or yourself. Disabling is better than sharing a password around, because a disabled login is dead straight away.

Rules and tips

  • Opening Team needs Manage users. Opening Roles needs Manage roles & permissions. The Owner has both. The built-in Admin can manage users but not roles.
  • Your plan limits how many active team members you can have, and the Owner counts as one. At the limit, MediPOS says Your plan allows … team members. Upgrade the plan to add more. Disabled members do not count.
  • Every change is in the audit log: Team member added, Team member access changed, Team member enabled/disabled, Role created, Role permissions changed and Role deleted.
  • Permissions are checked by the server on every action, not just by hiding buttons.
  • Staff with an email address can set a new password themselves with Forgot password? on the sign-in page.

Common questions

Can a cashier give a discount?

Not with the built-in Cashier role. Give that person the Pharmacist role, or a custom role with Give discounts, and set a Max discount (%) so it stays within reason.

Our salesman works in two branches. Does he need two logins?

No. Keep one team member and give him two role rows, one for each branch. He works in the branch set in Opens in branch.

A staff member left and knows the password. What should I do?

Click Disable on the Team list straight away. The login stops working at once, and everything they did stays on record.

Why can't I edit the Owner?

The Owner always holds every permission, so there is nothing to change. Other people get access through roles only.

Last updated 25 September 2026. Still stuck? Contact us.