For the office
The Team screen is the office roster: everyone who can sign in, what their account lets them do, and where booking alerts reach them. A manager invites people by email, the invitation asks each person to choose a password, and access is revoked by deactivating, never by deleting.
One table, one row per person: their name, Email, WhatsApp number, Account (the role, and for a reseller the agency they book for), and whether they are Active or Deactivated. The count next to the title says how many are active right now. Above the table sits the invite form, so bringing someone in is the first thing the screen offers.
The Account column answers it. Four kinds of account exist, and the difference between them is what the app offers, not a setting to configure:
What arrives is an email whose link opens Choose a password. The new person sets their own password and is signed in; from then on they sign in with email and password like everyone else. The link stays valid for seven days, and Resend invite on their row sends a fresh one if it expired or never arrived.
Deactivate revokes access: from that moment the person cannot sign in. Their row stays on the roster marked Deactivated, and everything they ever did keeps their name on it, on the board, in the history drawers and in the activity log. Reactivate restores access just as cleanly.
Because their history is attached to them. Every booking records who entered it and every change records who made it, and deleting the person would orphan all of it. So the roster works like the rest of TourCockpit: deactivate instead of delete, access ends, history stays exactly as it was.
It is where booking alerts go. Open a row with Edit and it holds two things: the person's WhatsApp number, and the checkbox Receive WhatsApp alerts for new bookings. Anyone with the box ticked is told whenever a reseller books, changes or cancels through the portal; changes the office makes itself send nothing, because the office already knows.
The checkbox is the permission and the number is only the address: each person opts in for themselves, and the alert goes to everyone who did, not to a single office phone.
The bottom card lists each agency that has portal users, with View their portal beside it. It opens that operator's portal exactly as they see it, so you can support them, add or cancel a booking on their plate. You stay signed in as yourself the whole time, and every change is logged under your own name.