The right access, right company, every time.
Multi-Company Access Rights adds a per-user, per-company permission layer on top of Odoo's global access rights — so one account can be a full editor in your parent company and read-only in a subsidiary, without duplicate logins.
The problem
Odoo's access rights and record rules apply globally per user, not per company. A finance manager who needs full control in the parent company gets the exact same rights in every subsidiary they can see, forcing administrators to either over-provision access or create duplicate user accounts just to keep legal entities properly segregated.
The solution
Multi-Company Access Rights lets administrators define a distinct permission profile for every (user, company) pair, enforced on top of Odoo's existing access rights so it can only restrict, never widen, what Odoo already allows. Reusable roles apply a template in one click, and a visual matrix shows every user's rights across every company at a glance.
Everything you need to govern access, per company
Every capability below is implemented in the module.
Permission Profiles per user & company
Define per-user create, read, update, and delete rights scoped to one specific company, so a single account can hold different permission levels as it moves between entities.
Visual Permission Matrix
One editable grid, grouped by company then user, with CRUD toggles for every governed model — read an entire entity's access posture on a single screen instead of opening users one at a time.
Reusable Roles
Save a permission template once and apply it to any profile in one click, keeping segregation-of-duties consistent as you onboard new users across companies.
Automatic menu & action hiding
Menus and actions a user cannot access in the active company are removed from their workspace automatically, keeping the interface clean and preventing accidental access attempts.
Managed Models catalog
Choose exactly which models this module enforces on — enforcement stays opt-in per model, so you control the scope of the whole governance layer from one list.
Pre-save Impact Preview
Before you commit a permission change, see the exact list of models and menus the affected user will gain or lose — no more trial-and-error rollouts.
“Why is this hidden?” explain tool
For any user and menu, open a wizard that names the exact company, role, and permission responsible for hiding it — turning silent behavior into a traceable answer.
Access Request workflow
When access is denied, the user can submit a request instead of hitting a dead end; a manager approves it and the right is materialized automatically.
Per-company two-factor gate
Require two-factor authentication for mutating operations on a per-company basis, and get a clear warning on the profile form when the assigned user has not enrolled yet.
How it works
Create a Permission Profile
Pick a user and a company, then apply a reusable role or set model-level rights by hand.
Fine-tune with the Matrix
Adjust CRUD toggles for every governed model, across every company, from one editable grid.
Preview before you save
Run the Impact Preview wizard to see exactly what a change will unlock or take away.
Users get clear answers
Hidden menus explain themselves, and a denied user can request access in one click.
Frequently asked
No sales fog. If your question isn't here, email us and we'll answer it the same way.
No. It adds a company-aware layer on top of them. Enforcement is always the base Odoo right AND the company right, so the module can only restrict what Odoo already grants — it never widens access, which makes it safe to install on a live database.
Buy it on the Odoo App Store
Purchase, download and install directly from the official Odoo Apps Store — you'll always get the latest supported build.
Multi-Company Access Rights
Per-user, per-company permission profiles with a visual access matrix, automatic menu hiding, and access-request workflows — proper segregation across every legal entity.
Buy on Odoo App Store