All posts
SecurityOperations

Your receptionist should not be able to see your revenue

19 September 2026 · 2 min read · QuantumOFit

Most gyms run on one shared login and a lot of trust. That works right up until the day it does not. Role based access is the least exciting feature we ship and the one owners relax about most.

Here is a question worth sitting with for a moment. If your front desk staff member left tomorrow and was upset about it, what could they see, export or change on the way out?

In a lot of gyms the honest answer is everything. One login, one password, shared on a WhatsApp group, changed never.

This is not about trusting your staff

We want to be clear, because owners sometimes hear this feature as an accusation. It is not.

Access control is not about suspecting the person at your desk. It is about not putting them in a position where a mistake is expensive. Somebody who cannot accidentally delete a member, edit a payment or export your entire member list is somebody who can work faster, because the cost of a wrong click is lower. Good permissions make people bolder, not more restricted.

Eight roles, from company admin down to member

QuantumOFit ships with a proper role structure rather than an admin switch. A company admin sees across every branch. A gym admin runs one location. A manager runs the floor. Reception can do the twenty things reception needs to do and none of the four things it should not. A trainer sees their own members and their own schedule. A member sees themselves.

Revenue, payroll and company level reporting sit where they belong, which is with the people who own the business.

More than one location, without more than one system

If you run two gyms, or plan to, this is the part that decides whether your software grows with you or gets replaced in eighteen months.

Each branch gets its own settings, its own staff and its own reports, all under one company account. Your branch manager sees their gym. You see all of them, and you can drill into any one of them without logging out and logging back in as somebody else.

What happens to the data itself

Member data is encrypted, and the structure is built so that personal details can be separated from the training and attendance data underneath them. That matters for a reason that is worth explaining rather than glossing over.

We are building towards using this data to make training smarter. When that happens, the useful signal is the pattern, not the person. A system that can learn from how a gym trains without needing to know who Priya is, is both better engineering and a smaller thing to worry about. We would rather design for that now than bolt it on later.

Why we put effort into the boring part

Nobody has ever booked a demo with us because they were excited about permissions. But we have had several conversations that went differently once an owner realised they could finally give their manager real access without also handing over the revenue reports.

Software people actually enter honest data into is software that was safe to enter honest data into. Everything else we build depends on that.

Want to see this in a real gym?

QuantumOFit records the attendance, memberships and follow-ups this piece is about. We will walk you through it on a short call.

Book a demo