Global company accounts allow organizations to grant local and regional team members administrative or operational access to specific platform functions. User privileges are governed by a dual structure: User Roles and System Access Levels.
For more information please refer to: Organization Entities, User Roles, & Access Levels.
User Roles Breakdown
| Role | Scope & Description |
| Master Admin | Exactly one user globally per organization. Held by an authorized signatory (typically in Finance or Treasury). |
| Controller | Manages one or multiple global entities or regions. Unlimited users permitted. |
| Manager | Oversees local or regional operations. Unlimited users permitted. |
| Standard | Default user status with standard operational access. Unlimited users permitted. |
| Suspended | Temporarily or permanently revokes platform access. |
Need to change your Master Admin?
Master Admin Available: Update roles directly via self-service under account settings. To action this request please refer to How To Reassign The Master Admin Role
Master Admin Unavailable: Submit a ticket to support@xtrm.comsupport@xtrm.com for identity verification and Master Admin reassignment.

Want to see how this works in real-time? Use the interactive demo below to click through the steps before reading the full guide.
Step-by-Step: Adding an Entity and User
Enter the entity's identifying details (such as Region, Country, or Legal Company Name) and click Save.

Click Invite New User.

Fill in required user details and assign their User Role (Master Admin, Controller, Manager, Standard) and initial System Access Level.
If setting Full Access, proceed directly to send the invite.

- If setting Custom or View Limited access, click Continue to fine-tune granular entity, payment, and editing permissions on the User Access Options screen.
- For more information, please refer to Organization, entities, users, roles, and access levels.

Pro-Tips & Compliance NotesCorporate Email Enforcement: Invited users must use email addresses associated with your official company domain (e.g., user@company.com). Generic email providers are restricted.
Granular Scope: Use Controller or Manager roles to limit visibility strictly to regional sub-ledgers or specific payment flows.
Was this article helpful?
That’s Great!
Thank you for your feedback
Sorry! We couldn't be helpful
Thank you for your feedback
Feedback sent
We appreciate your effort and will try to fix the article
