Przejdź do głównej zawartości

Customize the account page

This guide explains how to configure the account items of an organization. Account items are the fields on the account page and the user edit page of every member of the organization. For each field, you decide whether it is visible, who can view it, and who can edit it.


Learning outcomes​

  • Show or hide fields of the account page.
  • Restrict who can view and edit a field.
  • Group fields into tabs and choose the layout of the tabs.

What you need​

  • Administrator access to the organization in the Casdoor admin console

About account items​

Each account item has the following settings:

ColumnValuesDescription
NameA field from the list of account itemsThe field
VisibleOn or offWhether the field appears on the account page
View rulePublic, Self, AdminWho can see the value of the field
Modify ruleSelf, Admin, ImmutableWho can change the value of the field
TabTextTab under which the field appears on the user edit page

The rules have the following meaning:

RuleWho can view or change the field
PublicView rule only. Everyone can see the field of any user
SelfEach user, for their own account only. Casdoor matches by user ID, or by organization and username if the ID is missing
AdminAdministrators of the organization only
ImmutableModify rule only. Nobody can change the field on the account page
notatka

View rules and modify rules apply to single fields of a user profile. They are separate from permissions, which control access to applications and resources.

Configure the account items​

  1. In the Casdoor admin console, go to User Management > Organizations and open the organization.

  2. Scroll to Account items.

    Account items of an organization

  3. To show or hide a field, switch Visible.

    Visible switch of an account item

  4. To restrict a field, select a View rule and a Modify rule.

    View rule and Modify rule of an account item

  5. Save the organization.

Common patterns​

FieldView RuleModify RuleUse Case
NamePublicSelfEveryone can see names, but users can only change their own
EmailSelfSelfUsers can only see and change their own email
PhoneAdminAdminOnly admins can see and change phone numbers (for privacy)
Display namePublicSelfPublic profile name visible to all
PasswordSelfSelfUsers can only change their own password
wskazówka

Use the Admin rule for sensitive fields that only administrators should manage, such as phone numbers, addresses, and internal identifiers.

Group fields into tabs​

Items with the same Tab value appear together under one tab of the user edit page. Items without a tab value appear first, outside the tabs.

For example, to create a Contact tab with the email address, the phone number, and the location:

  1. Open the organization and scroll to Account items.
  2. Set Tab to Contact in the rows Email, Phone, and Location.
  3. Save the organization. The user edit page now has a Contact tab with the three fields.

Choose the tab layout​

Account menu on the organization edit page sets how the tabs are shown:

OptionLayout
Horizontal (default)Tabs across the top of the page
VerticalA menu on the left side of the page. Use it for organizations with many tabs

List of account items​

FieldDescription
OrganizationThe organization this user belongs to.
IDThe user's globally unique identifier (UUID).
NameThe user's unique login username within the organization.
Display nameThe name shown publicly on the user's profile.
First nameThe user's given name.
Last nameThe user's family name.
AvatarThe user's profile picture.
User typeThe category of the user account (e.g. normal user, service account).
PasswordThe user's login password.
EmailThe user's email address, used for login and notifications.
PhoneThe user's phone number, used for login and SMS verification.
Country codeThe phone country/calling code (e.g. +1 for the US), used together with Phone.
Country/RegionThe user's country or region.
LocationThe user's city or address.
AffiliationThe user's company, school, or other organizational affiliation.
TitleThe user's job title or position.
ID card typeThe type of government-issued identity document (e.g. passport, national ID card, driver's license).
ID cardThe document number of the user's identity document.
ID card infoAdditional identity document details (e.g. issue date, expiry). Only visible to the user themselves.
Real nameThe user's verified legal name. Locked and cannot be changed after identity verification is completed.
ID verificationControls visibility of and access to the Verify identity button on the profile page.
HomepageThe URL of the user's personal website or online profile.
BioA short biography or personal description.
TagOne or more custom labels attached to the user, used for filtering or grouping.
Signup applicationThe application the user originally signed up through.
Register typeThe method used to register the account (e.g. email, phone, OAuth).
Register sourceThe channel or provider through which the user registered (e.g. Google, GitHub, invite link).
RolesThe roles assigned to this user, which determine access within Casdoor.
PermissionsThe permissions explicitly granted to this user.
GroupsThe user groups this user belongs to.
3rd-party loginsLinked third-party OAuth accounts (e.g. Google, GitHub, WeChat) used for social login.
PropertiesCustom key-value pairs for storing additional application-specific data about the user.
BalanceThe user's account balance, used for built-in payment or credit features.
Balance creditMinimum balance floor for the user's account. Must be ≤ 0. Set to 0 (default) to prevent the balance from going negative. Set to a negative value (e.g. -50) to allow the balance to drop as low as that amount before transactions are blocked.
Balance currencyThe currency unit for the user's balance (e.g. USD, CNY).
CartItems added to the user's shopping cart (for e-commerce integrations).
ScoreA point score assigned to the user, typically by application logic.
KarmaA reputation score reflecting the user's activity or community standing.
RankingThe user's rank among all users, derived from score or other metrics.
LanguageThe user's preferred display language for the Casdoor UI.
Is adminWhether the user has organization administrator privileges.
Is forbiddenWhether the user account is banned; forbidden users cannot log in.
Is deletedWhether the user account has been soft-deleted (marked as deleted but retained in the database).
Multi-factor authenticationThe user's MFA settings and enrolled second-factor methods (e.g. TOTP app, SMS).
MFA itemsThe list of individual MFA methods enrolled by the user.
WebAuthn credentialsRegistered passkeys or hardware security keys (WebAuthn/FIDO2) for passwordless login.
Last change password timeTimestamp of the user's most recent password change. Admin-only.
Managed accountsSub-accounts or delegated accounts that this user can manage on behalf of others.
Face IDEnrolled face recognition data used for biometric login.
MFA accountsExternal accounts linked specifically for multi-factor authentication purposes.
Need update passwordWhether the user is required to change their password at next login. Admin-only. When set, the user is redirected to their Account page after sign-in and cannot navigate elsewhere until the password is updated.
IP whitelistIP addresses or CIDR ranges from which this user is allowed to sign in. Admin-only.

See also​