PREPROD
ReaderAuthor

Tally · Security

Multi-tenant isolation & security

Every record in Tally is scoped to a tenant and read with that scope, so one barn's animals, buyers, and money are never visible to another — and staff roles further limit what each user sees.

1 min read · 3 depth levelsstratum-tally · vpilotMatches production
Everyday

Tenant isolation is the wall between barns. Each barn (tenant) sees only its own data — its sales, consignors, buyers, settlements, and audit trail. There is no shared pool and no cross-barn view.

Inside a barn, roles further shape what staff can do:

  • Owner / Manager — full reach.

  • Intake clerk — receiving and consignments.

  • Scale operator — weigh tickets.

  • Ring clerk — recording sales at the block.

  • Office clerk — invoices, payments, settlements.

Isolation isn't a setting you turn on — it's enforced on every read. There's no way to "see everything" across barns, by design.

Admin section
Permissions, locking rules, and setup — visible to admins.
View as admin
Technical section
Data model, API, and internals — visible to developers.
View as developer
Was this helpful?