Password Manager Overview
Preparing narration…
🔐
Koru Clinical
Password Manager
Overview
A secure, team-wide vault for managing credentials — built for clinical and behavioural health teams and designed around how your team actually works.
🗂️ Category access control
👥 Team user management
📋 Full audit trail
01 — Overview
What Is the Password Manager?
The Koru Clinical Password Manager is a secure, web-based vault that stores all the usernames and passwords your team uses every day.

It replaces the risk of passwords shared by email, stored in spreadsheets, or written on sticky notes — with a single, controlled, auditable system accessible only to authorised team members.
🔐
Secure storageAll credentials protected and access-controlled per user
🗂️
Category-based accessStaff only see the categories they've been assigned to
📋
Full audit trailEvery view, edit, and deletion is logged with timestamp
📧
Invite-based onboardingUsers set their own password via a secure email link
02 — Access
Signing In & Password Recovery
Users sign in with their email address and password. New users receive a secure invite email and set their own password — no admin needs to create one for them.

If a user forgets their password, they can click "Forgot your password?" on the login screen to receive a reset link by email — valid for two hours.
Sign in
Email address
jane@koruclinical.com
Password
••••••••
Show
Sign in
Forgot your password?
03 — The Vault
Finding & Using Passwords
The vault opens to a search-first view — nothing is shown until you search or select a category. This reduces shoulder-surfing risk and keeps the screen clean.

Category pills appear at the top for quick browsing. Each entry shows the site, username, category, and a link to open the site. Use Copy username and Copy password to grab credentials without revealing them on screen.
Vault
Audit log
Users
Clinical
Finance
HR
Administration
CAQH ProView
koruclinical | Clinical · Open site ↗
••••••••
Copy password
EMR System Admin only
admin@koruclinical.com | Clinical
••••••••
Copy password
04 — Access Control
Who Sees What
Access is controlled at two levels. First, each user is assigned to one or more categories — they only see passwords in those categories.

Second, each password entry has a "Who can access" setting: Everyone, Admins only, or specific email addresses. Admins always see everything. Entries marked "Admin only" are invisible to staff regardless of their category assignments.
👥
Category accessUsers only see passwords in their assigned categories
🔑
EveryoneAll authorised users in the category can see it
🛡️
Admins onlyHidden from all staff — admin keyword in the access field
📧
Specific emailsOnly named users can access — regardless of category
05 — User Management
Inviting & Managing Team Members
Admins invite users from the Users tab. Fill in their name, email, role, and tick which categories they should access. An invitation email is sent automatically — valid for seven days.

Users show a Pending badge until they've set their password. Admins can edit details, reset passwords, change category access, or delete users at any time.
Users
Michael Reid
mreid@koruclinical.com
Administration, Finance, HR
admin
Edit
Jane Smith
jsmith@koruclinical.com
Clinical, HR
staff
Edit
Delete
Alex Torres
atorres@koruclinical.com
Pending
Edit
Delete
06 — Categories
Managing Categories
Categories are managed from the Categories tab — available to admins only. Add new categories, rename existing ones, or delete those no longer needed.

Renaming a category automatically updates all passwords and user assignments that reference it. A category can only be deleted once all passwords in it have been reassigned — the app tells you exactly how many need moving.
Categories
Categories
+ Add category
Administration
Rename
Delete
Clinical
Rename
Delete
Communications
Rename
Delete
Finance
Rename
Delete
HR
Rename
Delete
07 — Audit Log
A Complete Activity Trail
Every action in the system is recorded in the Audit log — accessible only to admins. It captures who viewed passwords, added or edited entries, invited users, changed categories, and more.

Each entry shows the timestamp, user email, and action. The most recent 100 entries are shown, newest first. Use it to monitor usage and ensure accountability across your team.
Audit log
22/06/2026 09:14mreid@koruclinical.comadded password — Payroll System
22/06/2026 09:10mreid@koruclinical.cominvited user — Jane Smith
21/06/2026 16:32jsmith@koruclinical.comviewed passwords
21/06/2026 14:05mreid@koruclinical.comrenamed category — General → Administration
20/06/2026 11:22jsmith@koruclinical.comset password via invite
Summary
Everything Your Team
Needs to Stay Secure
The Koru Clinical Password Manager brings together secure storage, fine-grained access control, team management, and a full audit trail — all in one place.
🔐 Secure vault
🗂️ Category access
👥 User invites
📋 Audit log
🔑 Password recovery