192 votesKim Crocco commented
I agree with the comments already posted about separating the financial function, creating read only access and having individual controls.
19 votesKim Crocco commented
Per U.S. Internal Revenue Service requirements, only the check signers for our organization can have Full Admin Access so the webmaster role has been compromised. Access is permitted for limited blocks of time and we must now keep a log of our exact activities.
Somehow separating access to the Financial component of the system would be very helpful. As webmaster I would still need access to it for adjustments but a log would be fine in that case.