Skip to content

Exclusive 50% off for 36 months for the first 100 Professional accounts, until 31 December 2026. See the programme →

Security & compliance · Permissions

Everyone sees what they should, and everything that matters leaves a trace

Roles built from individual permissions, and two logs: the login history and the log of sensitive actions — export, deletion, change of rights. Kept with minimum retention periods that nobody can lower, not even you.

No credit card required

In practice

Control, separate, trace

Roles built from permissions, not tick boxes

Every role is an assembly of individual permissions — view, create, export, delete — by area. Standard roles cover the common cases; your own are built without us. A front desk agent will never see the export, a reader will change nothing.

  • Individual permissions by area (contacts, campaigns, invoices, etc.)
  • Standard roles and custom roles
  • Principle of least privilege applied by default
  • Rights revisable at any time, effective immediately

Minimum retention periods

Each log has a default retention period and a minimum set by Metaventus: the audit log is kept six years by default and never less than one year; the login history twelve months by default, never less than ninety days. Your organisation can extend these periods, but not shorten them below the minimum — and every change is itself logged.

  • Audit log: six years by default, one-year minimum
  • Login history: twelve months by default, ninety-day minimum
  • Periods adjustable by the organisation, always above the minimum
  • Automatic purges, themselves logged

Two logs, available to consult

The login history says who signed in, when, from where, and by what means. The audit log records sensitive actions — export, deletion, change of rights, creation or revocation of an API key — with the author and the timestamp. Both can be consulted in the application for your internal controls.

  • Login history: user, date, address, sign-in method
  • Audit log of sensitive actions, timestamped
  • API keys: creation, revocation and purge logged
  • Consultation in the application, with no request to support
On request

What you can demand from us

For your CISO, your DPO or your internal audit, on request.

  • Full catalogue of permissions
  • Role matrix template
  • Default and minimum retention periods for each log
  • Access review procedure
dpo@metaventus.com

FAQ

Frequently asked questions

Can we create our own roles?

Yes, from the individual permissions. A "Front desk agent" role that sees requests without being able to export contacts takes a few clicks to build.

Can the audit log be modified?

No: it is append-only, and it is purged only when the retention period expires, never by hand.

Can we shorten log retention?

You can extend it freely. Shortening it is only possible down to the minimum set by Metaventus: a compliance minimum that could be lowered from the interface would no longer be one.

Another question? Write to us — a human will answer.

Ready to bring all your tools together?

Create your free account in two minutes: CRM, telephony, marketing, appointments and customer service — all in one place, with AI built in.

No credit card required