Commit Graph
74 Commits
Author SHA1 Message Date
jbm-odoo ec07e72845 [IMP] base,*: Reorganize access rights groups
Purpose
=======

Access group terminology is missleading. Yous have to be manager to administrate
an application. This task consists to rename groups to be understandable for everyone.

Groups should be reorganised on the users form to be more explicit.

Specification
=============

1/ Rename 'Manager' to 'Administrator' in users groups.
2/ Define a hierarchy on access groups by using the category_id in the manifests
   A category 'Operations/Project' will create a category Project with a parent
   category 'Operations', and something smart is already developed (in modules/db.py)
   to avoid duplicating categories.
3/ Add a group in expenses to be able to approve expenses reports for my team.
4/ Add a group in timesheets to be able to approve timesheets for my team.
5/ Remove partially the useless crap in ir_module_category_data.xml
6/ Sort access rights groups on users form according to its parent category

closes odoo/odoo#29362

Signed-off-by: "Yannick Tivisse (yti)" <yti@odoo.com>
2019-03-05 09:08:12 +00:00
Christophe Simonis 0e7675847f [MERGE] forward port branch saas-12.1 up to 0f4abc5c22 2019-02-22 16:25:02 +01:00
Yannick Tivisse 8fa8ffdf27 [FIX] hr: Add a multi company ir.rule on hr.employee model 2019-02-18 15:28:15 +00:00
RomainLibert d5fd84b89a [IMP] hr: add onboarding/offboarding activity plannings
Purpose
=======

Give the possibility to elaborate plans through Odoo. For instance, in HR,
you could create an onboarding plan when a employee is created. Someone manages
laptop and other equipment, someone check hr stuff, ... This feature is generic
but in a first time we will apply it only on the hr module.

Ease HR process in a company by creating plans: a plan is an assembly of Next
Activities that will be launched together whenever you need it.

Example of plan for an employee onboarding:

Activity: Prepare materials
Responsible: Alain
Deadline: At the contract signature

Activity: Manage Cars
Responsible: Cécile
Deadline: at the contract signature (both signature)

Activity: Plan Training
Responsible: Caroline
Deadline: After signature

Activity: Training
Responsible: Employee
Deadline: 1 week after the employement date

Specifications
==============

On HR Configuration: Add a menu "Activity Plans"

Activity plan object:
 - Name
 - Model (debug mode) (hr by default)
 - Activity Template o2m
    - Activity Type (only the one related to hr)
    - Deadline (come from Activity Type)
    - Responsible \/
        0  Coach
        0  Manager
        0  Other
        [Responsible_name] \/  (coach, manager or manually set if other)

Add datas, 2 plans:

Onboarding
    - Name: Onboarding
    - Plan lines:
        Activity: Setup IT Materials
        Responsible: [a user] (manager)
        Deadline: At the contract signature

        Activity: Plan Training
        Responsible: [manager]
        Deadline: After signature

        Activity: Training
        Responsible: [Employee]
        Deadline: 1 week after the employement date

Offboarding
    - Name: Onboarding
    - Plan lines:
        Activity: Compute Out Delais
        Responsible: [a user] (manager)
        Deadline: today

        Activity: Take Back HR Materials
        Responsible: [manager]
        Deadline: today

        Activity: Manage Car
        Responsible: [manager]
        Deadline: today

When to trigger it ?

HR specific use case:

1/ On employee, from the employee chatter:
when you create an employee, Odoobot will log a note with the following message:
"Congratulations ! May i recommand you to setup an onboarding plan?", with a link
create a plan from it.

2/ Add a button 'launch plan' to open a wizard to select the plan

3/ When archive an employee
Open a wizard with:
    - Reason (selection)
    - Action plan (m2o not required)

Error if employee not linked to a user.

Task : 1912681

closes odoo/odoo#29151
2018-12-18 11:20:54 +00:00
Christophe Simonis a7a30791de [MERGE] forward port branch saas-11.4 up to a5187cef10 2018-08-27 11:16:44 +02:00
Raphael Collet 2f7c03d9ca [IMP] base: add regular user admin as uid 2
User 1 simply becomes a technical user (inactive, no password).
2018-08-23 21:38:57 +02:00
Martin Trigaux 44d92b560a [IMP] hr: rephrase help message
Courtesy of Yenthe Van Ginneken
2018-08-23 09:51:11 +02:00
Jeremy Kersten d5b0f99943 [FIX] hr: security - an officier is an employee/internal user
Tests from hr_recruitments work luckily until now.
Because module maintenance imply base.group_user for group_equipment_manager

    <record id="group_equipment_manager" model="res.groups">
        ...
        <field name="implied_ids" eval="[(4, ref('base.group_user'))]"/>
    </record>

and module hr_maintenante imply group_equipment_manager for hr_user

    <record id="hr.group_hr_user" model="res.groups">
        <field name="implied_ids" eval="[(4, ref('maintenance.group_equipment_manager'))]"/>
    </record>

After this commit launch test on hr_recruitment module without any other module will works.

Design-theme repo show this error because repo tests hr_recruitment without installing maintenance
(Repo install website_* modules -> website_hr_recruitment -> hr_recruitment -> hr)
2018-08-15 16:23:23 +02:00
Yannick Tivisse 2f15a5fa64 [IMP] base: Add support for private addresses
Purpose
=======

Add the possibility to create private addresses, only accessible for a subset
of users.

Specification
=============

- Add a new 'Private' partner type
- Add a res.groups in base 'Access to Private Addresses'
- Add ir.rules for the following behavior:
    - Every employees/internal users can read non-private addresses
    - Only users in group_private_addresses can access private addresses
- Add in base a simplified form view for private addresses
- A HR Officer is automatically granted in group_private_addresses
- Use the simplified form view to open the address_home_id form on employees
2018-05-04 13:17:25 +02:00
Yannick Tivisse 99f497b390 [IMP] *: Define groups on res.users models
The reified view on the res users will be dropped in the following commit.

The previous commit adds support to define each group as a computed field on the res users.

This commit defines:
- A boolean field for each 'isolated' res.group, i.e. a group in the hidden category.
- A selection field for each 'Application' res.group, i.e. a group in a application category.

Example:
- The group to manage pricelist in sales becomes a boolean field
- The groups project user/manager become a selection field
2018-04-26 15:13:38 +02:00
Viral Thakar f53f6f865b [IMP] hr,mail: adapt tooltip message to new field values and fix a typo 2017-12-13 11:16:05 +01:00
Martin Trigaux 998a1aee3b [IMP] hr: remove useless group description
The group is in base, this is where the group should be described.
Manage your "own stuff" is probably not very informative anyway.
2017-10-02 13:58:01 +02:00
Denis Vermylen 1c2e3d3838 [FIX] hr_attendance, hr_*: move group_hr_attendance to hr_attendance
move group_hr_attendance from hr -> hr_attendance where it belongs.
2017-01-26 19:19:19 +01:00
Martin Trigaux 11812b0b9e [FIX] all: remove external ids fakely from base
Several modules defines records with the external ID `base.foo_bar` while it is
created inside this module (typically menus and groups).
While there is no technical reasons to do so but this may introduce issues:

- these records will not be deleted during uninstall
- if a language is loaded before the installation of the module, it won't be
  translated

The uninstallation will only remove the records with an external id linked to
this module (these would only be removed when removing base).

Installing a language before the module will drop the translations not linked
to an existing external id (as it can not be resolved).

This commit correct all the external ids tagged as from base or other incorrect
modules.
2016-09-02 16:14:26 +02:00
Yannick Tivisse ff63f5d0a3 [IMP] base_setup: Allow the admin to modify the default user acess rights
Add a link in the general settings to access easily the default_user form view in order to modify the default access rights

The default_user manager rights declarations in all the applications have been move in a noupdate="1" definition to avoid the manual configuration overwrittings
2016-08-23 11:14:37 +02:00
Ravi Gohil 44c62e1b7f [MIGR] hr : migrate to new api
- Rewrite the code to new api without changes
business behavior
- Remove old v7 backward compatibility method
- Regroup view definitions in the same xml file
- Use read_group for computed fields
2016-04-13 12:28:34 +02:00
Yannick Tivisse 1ecba213f4 [IMP] Newly created users get all manager access right
Coming from a bug in web_settings_dashboard. Invited user didn't have any rights
when created from the dashboard, which was leading to an error.

This bug leaded to a new discussion. Better to have basic employee having user
rights for all main applications. For bigger entreprises there is an admin that
will carefully remove extra rights, if necessary. The target is small businesses,
it makes sense that every way to create a user gives the same result.

In conclusion, each new user has a full access to the applications by default

How is it implemented ?
We added an inactive default user which original access right to the groups
'base.group_user' and 'base.group_partner_manager' in base. Each
application will extend the default user's access right by adding the maximal
access right for this application.

On user creation, we will use by default the 'group_id' field from the default
user. We will in the same time remove the ugly 'default_groups_ref' key which
was passed sometimes in the context for some fields in some views, and sometimes
nothing.

So, the user can modify the access rights for the default user, but he should be
aware that removing project user access rights for a default user will prevent
a *created on the fly in a task* user will not be able to access the task.
2015-11-20 16:27:32 +01:00
Yannick Tivisse 024546919e [IMP] employees form view : Usability improvements
- remove otherid field from the model, and the reports
    - reorganize several fields on the form
    - removed group_multi_department group, departments are always activated,
      as 3 departments are now in the datas
    - departments menuitem is accessible to the hr officers and managers only
    - removed all the configurations in the employee root menu
    - moved payroll country module selection to payroll configuration
    - removed useless fields from the form : attendance state, goals_ids,
      remaining leaves, as they are accessible via stat buttons, kanban views, etc.

Conflicts:
	addons/hr/hr_view.xml
	addons/hr_holidays/hr_holidays_view.xml
2015-06-23 16:08:19 +02:00
Thibault Delavallée b865005fca Revert "[IMP] HR Usability cleaning"
This reverts commit 79c338dcb352be3d40118f998a76e1b7576a35da.
This commit has been done hastily without review. Moreover it
mixes changes related to different stuff.

The commit is then reverted to allow a propre review and cleaning
of the branch.
2015-06-09 12:52:03 +02:00
Yannick Tivisse 4997c18a8e [IMP] HR Usability cleaning 2015-06-09 12:52:03 +02:00
Gaurav Panchal 6e14dd0ef9 [IMP] config: various improvements
- sales_team: demo data enable sales team features to users
- hr_attendance: admin can enable attendance features from hr settings
- multi_company: if admin enable these features, she gets the
  multi-company usability settings
- account: enabling multi-currency functionalities enable pricelist
  functionalities
2015-03-31 17:31:11 +02:00
dka-odoo d27910a8f2 [IMP] hr_department: new kanban view for HR Departments.
hr add a simple kanban view that is updated by the various hr modules.
Each module adds statistics and links in the kanban vignette, either
in a to do or to approve column.

The department kanban view can be seen as a small dashboard to have
the main data about the department displayed. Links allow the HR
manager to be redirected towards the various things to do or to
approve in its department.
2015-02-25 11:25:40 +01:00
Xavier Morel 7a2d912964 [REM] bunch of nonsensical @model + @ref
bzr revid: xmo@openerp.com-20130429124333-p1h11fpy04y3sljy
2013-04-29 14:43:33 +02:00
Olivier Dony 3fe6987ce7 [MERGE] Harmonization of noupdate flag on security XML data, courtesy of Alexis de Lattre (Akretion)
ir.rule records are in noupdate data blocks to let the admin
alter them without fear of them being reset at next update.
Other records such as groups are in normal mode, so they
can be updated whenever necessary

bzr revid: odo@openerp.com-20121218232001-t425t4hi7qbmsip2
2012-12-19 00:20:01 +01:00
Harry (OpenERP) 01ceabea6f [FIX] sale,hr: tips on user groups
bzr revid: hmo@tinyerp.com-20120906064936-qrckr0avzpjpm4m4
2012-09-06 12:19:36 +05:30
Harry (OpenERP) e07a624e1a [MERGE]
bzr revid: hmo@tinyerp.com-20120906054754-0ia4w343p38gqv26
2012-09-06 11:17:54 +05:30
pso (OpenERP) e07499a9a2 [MERGE] Merged HSA's branch to add currency field on accounting config wizard and to improve tooltip
bzr revid: pso@tinyerp.com-20120831125842-m0ioafazvs1h47gq
2012-08-31 18:28:42 +05:30
Hardik b6eacb18e7 [IMP]Add multi currency field and tooltip messages are add
bzr revid: hsa@tinyerp.com-20120831084455-fnugi1p4q6hwb5r3
2012-08-31 14:14:55 +05:30
Alexis de Lattre 5101771cd9 Harmonize the noupdate flag on security XML files :
- ir.rule objects are noupdate="1"
- all other objects are noupdate="0"

bzr revid: alexis@via.ecp.fr-20120713170838-pjsysliyt6twazrc
2012-07-13 19:08:38 +02:00
Kuldeep Joshi (OpenERP) 8d260385db [IMP] change the group name
bzr revid: kjo@tinyerp.com-20120531071155-07paq206kiqrifd5
2012-05-31 12:41:55 +05:30
Raphael Collet ba1454149c [IMP] groups: remove auto-inclusion of admin in groups, and make the inclusion explicit in groups
bzr revid: rco@openerp.com-20120404090830-nteimn2kvz8nkk7h
2012-04-04 11:08:30 +02:00
Bhumika (OpenERP) 0cf6e236e8 [FIX] hr: remove referecne of res.partner.address
bzr revid: sbh@tinyerp.com-20120307052100-ylqekp6w7xe72ucd
2012-03-07 10:51:00 +05:30
Raphael Collet 0c1021806d [MERGE] trunk-user-groups-rco: add category_id to groups
bzr revid: rco@openerp.com-20111213141949-ohvn0c9iq6tcl7jj
2011-12-13 15:19:49 +01:00
Fabien Pinckaers f27318c8af [IMP] Security Rule: removed duplicates due to inheritancies of groups
bzr revid: fp@tinyerp.com-20111212181113-mhnnbps3ip8ls6pp
2011-12-12 19:11:13 +01:00
Raphael Collet 084c5d9289 [IMP] hr, idea, knowledge, lunch: add group categories
bzr revid: rco@openerp.com-20111212134938-xwfnq4d3ks1awuu9
2011-12-12 14:49:38 +01:00
Meera Trambadia (OpenERP) d979aad3de [MERGE] branch merged with lp:openobject-addons
bzr revid: mtr@tinyerp.com-20110916054138-93b3caomaij5dyp4
2011-09-16 11:11:38 +05:30
Olivier Dony d45883d44a [FIX] hr: HR Officer group should imply HR Employee group
Failure to have this dependency means that the drop-down for 
HR permissions on the user will always only show Employee
even if the user also has Officer/Manager access

bzr revid: odo@openerp.com-20110824151143-cysnlvetzrvqrfs2
2011-08-24 17:11:43 +02:00
fp fa7874cddc [IMP] Improved bank account management, report footer, stages by default on projects
bzr revid: fp@fp-laptop-20110815142141-938zg1laoe8wtbkd
2011-08-15 16:21:41 +02:00
Raphael Collet ba6342174e add group implications
bzr revid: rco@openerp.com-20110802130811-pkdmw43ufifz0tpj
2011-08-02 15:08:11 +02:00
mtr 5bac583ce7 [FIX] analytic,hr,hr_evaluation,hr_expense,hr_recruitment: added multi-company access rules
lp bug: https://launchpad.net/bugs/788139 fixed

bzr revid: mtr@mtr-20110608072935-blig6ejq1oa36un5
2011-06-08 12:59:35 +05:30
Quentin (OpenERP) f7323eb1af [IMP] hr: replaced marital.status object by a fields.selection to ease to use in payroll module
bzr revid: qdp-launchpad@openerp.com-20110408163116-3qmhc4phurtpuzmf
2011-04-08 18:31:16 +02:00
ksa (Open ERP) 4fc5537bd8 [IMP]: hr related changes
bzr revid: ksa@tinyerp.co.in-20110216084531-xr94jx9116ns3qyh
2011-02-16 14:15:31 +05:30
qdp-launchpad@tinyerp.com 9fb4e60e68 [FIX] hr, access rights: a simple employee should be able to see the list of departments
bzr revid: qdp-launchpad@tinyerp.com-20110128092939-u6lpij6zexv6qztl
2011-01-28 10:29:39 +01:00
François Degrave 469b5a8c6e [IMP] removed contract tab in employee form view + fixed holidays shortcut
bzr revid: fde@openerp.com-20101229161029-o5cko7yu1sf3li45
2010-12-29 17:10:29 +01:00
François Degrave 63e49cf25d [IMP] HR access rights
bzr revid: fde@openerp.com-20101229074726-3iucy5o1886n9y9e
2010-12-29 08:47:26 +01:00
François Degrave 6fd9d3bb9c [IMP+FIX] HR access rights, menus
bzr revid: fde@openerp.com-20101229073956-oze90c0gwlkk4s9t
2010-12-29 08:39:56 +01:00
Fabien Pinckaers 6e3a64a534 fix
bzr revid: fp@tinyerp.com-20101228171706-yxthy7o0u5vs21q8
2010-12-28 18:17:06 +01:00
François Degrave 644e615762 [FIX] crm/security/ir.model.access.csv: ValueError: No references to base.group_hr_user
bzr revid: fde@openerp.com-20101228145612-f0akf0k22yjb8wlv
2010-12-28 15:56:12 +01:00
Harry (OpenERP) 764b9f251e [FIX] correct regression on intalling module without demo data
bzr revid: hmo@tinyerp.com-20101114134821-7djwpr6nmmxu584q
2010-11-14 19:18:21 +05:30
vth 448fc93683 [IMP] account,hr,sale,point_of_sale,event: give user role to the demo user
bzr revid: vth@tinyerp.com-20101101124606-ia3nqngu19u8b7oa
2010-11-01 18:16:06 +05:30