WRMS ProDocs

Security

The security controls in your hands — two-factor authentication, strong passwords, sessions, access control and the audit log.

Audience:Workshop OwnerAdministrator

Most security problems in a small business come from shared logins, weak passwords and people keeping access after they leave. WRMS Pro gives you the tools to prevent all three.

Checklist for owners

  • Everyone has their own login. Do not share accounts.
  • Owners, Admins and anyone who handles money have two-factor authentication on.
  • Every Member has a custom role that limits them to what they need. See Roles and permissions.
  • People who leave are removed from Settings → Team on their last day.
  • Share links sent to the wrong person are revoked. See Share links.
  • You check the audit log now and then.

Two-factor authentication

Two-factor authentication asks for a six-digit code from an authenticator app after your password. Set it up in Settings → Account; see Account setup.

If you lose your phone, sign in with one of your backup codes. Each code works once. Then set 2FA up again on your new phone.

Passwords

  • Passwords must be 8–128 characters with at least one uppercase letter, one lowercase letter, one number and one symbol. This is checked every time a password is set.
  • Changing your password needs your current password.
  • Resetting a forgotten password signs you out everywhere else.

Sessions

  • Changing your email address signs you out on your other devices, and your old address is told about the change.
  • Removing someone from your workshop stops their access to it on their next action.

Keeping customer data private

  • Everything in WRMS Pro belongs to one workshop and is only shown to members of that workshop.
  • Share links contain a long random code. Anyone with the link can view that one document, so send links only to the customer.
  • Your costs and markups are never shown on customer documents.

Reporting a security concern

If you think your account has been accessed by someone else, change your password, check Settings → Team and the audit log, and contact WRMS Pro support straight away.

This page describes the controls available to you. For WRMS Pro's hosting, backup and data-protection commitments, refer to the WRMS Pro terms and privacy policy on the WRMS Pro website.

Still need help?

Email support@wrmspro.com or use the contact form. Signed-in users can also send a request from Settings → Support.

On this page