Enterprise & Security
Built on Odoo 17's own access-control and multi-company architecture, with additional isolation guarantees verified for this product specifically.
Multi-Company Data Isolation
Company Isolation Completion is a Locked capability: transactional models are verified so that one company's trips, documents, budgets, and risk records are never reachable from another company's users.
Role-Based Access Control
Access follows Odoo's native security-group model, aligned to the roles described on the Roles page — travelers, approvers, compliance officers, finance, and administrators each see only what their role governs.
Decision Explainability & Audit
Automated compliance and routing decisions record the rule and inputs behind them, giving auditors a traceable history rather than an opaque outcome.
Governed Engineering Process
Every capability on this site passed through a documented, multi-stage engineering lifecycle — including independent validation — before being marked complete. No capability is described as done based on developer self-assessment alone.
Honesty about scope
Enterprise SSO
Single sign-on integration is on the roadmap and is not yet implemented.
No third-party certification claimed
"Officially Locked" describes this project's own internal engineering sign-off — it is not a claim of external certification, audit, or independent consultant validation. An independent Odoo consultant review is planned but has not yet occurred; see Consultant Review.