| Customer | Documents | Created by | Created | Expires | Last login | Status |
|---|
| Customer | Result | Detail | Document | Time | IP | Browser |
|---|
| Result | Reason | Time | IP | Browser |
|---|
| Document | Action | By | Time | IP |
|---|
| Account | Action | By | Time | IP |
|---|
No password is set here — the new user gets an emailed activation link to set their own password, same as a customer account.
| Role | Created | Last login |
|---|
Signed in as
Your logo appears in the nav bar, login screens, and the customer viewer. Upload a PNG or JPEG. Recommended: landscape, around 240×80 px (2× retina). The server resizes to a max of 120×40 px and keeps your original intact. For the browser tab icon, use the separate Favicon uploader below instead — a landscape logo squashed into a small square icon won't look right.
A separate image just for the browser tab icon. Recommended: square, at least 64×64 px — a wide logo here will get shrunk and letterboxed rather than filling the icon cleanly. If nothing is uploaded here, the main logo above is used instead (also imperfectly, for the same reason); with neither uploaded, a generic placeholder is shown.
Applies to everyone — staff, admins, and customers. Fractional values work too (e.g. 0.5 for 30 minutes). Takes effect on each person's next request; anyone already signed in keeps their current session until it naturally expires.
Activation links are sent when a customer account is created (or its activation is resent) and no password has been set yet. Reset links are sent from "Forgot password?" and from resending to a customer who already has a password. Both accept fractional hours (e.g. 0.5 for 30 minutes) and apply to links sent after saving — already-sent links keep whatever expiry they were created with.
Controls how activation and password-reset emails are sent. These values are stored here in the database, so they survive every future file upload/redeploy — get them from your mail/IT admin, not from a developer.
Leave the password field blank to keep the currently saved password — it's never shown here once set, only whether one is on file.
When on, every activation and password reset link is also written to the server's PHP error log, so accounts can be tested without a working mail relay. The real email still sends either way. Turn this off before onboarding real customers — leaving it on means every customer's activation link is sitting in a server log.
| Customer auth | Each customer signs in with their own email + password, same login form as staff |
| Account activation | No password is ever set or seen by staff — customers set their own via an emailed link |
| PDF delivery | Server renders pages as images, raw PDF never sent to browser |
| Watermarks | Customer name + date burned diagonally into every page server-side |
| Access log | Success and failed access attempts both recorded |
| Expiry | An expired account stays loginable but shows no documents, rather than blocking sign-in |