Help / Security, privacy & your data / What Headway staff can and can't see

What Headway staff can and can't see

Concept1 min
In one sentenceHeadway staff see the facts about your account - plan, seats, admins, usage counts - and never your workspace's records; today staff cannot enter a workspace through the product at all.

What staff can see

Headway staff sign in through the same door as everyone else. Those on the operator list see one extra page, Customers, which lists every workspace and reads account facts only: workspace and organisation name, region, when it was founded, plan and billing status, modules on, seats used against the limit, member count, the admins' names and email addresses, whether it is closed or awaiting deletion, when anyone was last seen, and the week's counts - sign-ins, active members, deals created, API calls. It also reads the account stream your Admin › Audit log shows, and 30 days of usage counts.

What staff cannot see

Nothing on that page reads a deal, company, contact, candidate, employee, quote, note or attachment, and the counts carry no names or record contents. An operator inside a workspace is there only as whatever membership they already hold.

There is no support login, no impersonation and no superuser switch. When staff do need to see inside a workspace, it will be by a grant your admin gives - a scope, a duration, a reason, recorded in your audit log. That grant is not in the product yet, so today staff cannot enter your workspace through it at all. Outside it, the people who run the server can reach the database directly; that is an emergency path, not a support tool, and the privacy policy sets its terms: at your request, with your administrator's agreement, for a stated reason.

Did this answer it? Not quite - tell us