You protect your account from phishing when you limit access to sensitive actions and data. You do this in Mews Operations, in the User management section, by assigning roles with role-based permissions. Role-based permissions reduce phishing risks by limiting what each user can see and do. With these permissions you can assign access based on job responsibilities, restrict sensitive actions like exporting data or editing billing details and avoid giving full access to all users, for example, a front office team member can view reservations but cannot export financial reports. This limits the impact if someone gains access through a phishing attempt.
In this article, you can learn about:
Step 1: Assign roles with limited access
Assign roles instead of giving broad access to users, you can learn more in the How to set up and customize user roles in Mews Operations help article.
Step 2: Review and update roles regularly
Review roles to keep access secure over time. To minimize potential phishing incidents, remove unnecessary access to certain screens and limit export and delete actions where possible.
- In Mews Operations, go to the main menu
> User management > Users.
- Click the role you want to review, then click
Edit.
- Click the Roles and permissions tab and fill in the following details:
- Roles: Click to select a new role.
- Learning path: Click to select a new learning path.
- Click Save.
- Repeat steps 2-4 for all roles you want to review and update.
You now maintain secure and controlled access across your team. This helps protect your account from phishing attempts.
Help article
- Managing user roles and permissions
- How to secure your property and guest information from phishing incidents
- Securing your Mews Operations user accounts