[ADD][16.0] base_group_erp_user & base_group_erp_user_role
Theses new modules adds a new first level in "Administration" groups to allow create users, groups and roles without being able to change the groups of a user, the groups of a role, the groups of a role and the roles assigned to users.
There hasn't been any activity on this pull request in the past 4 months, so it has been marked as stale and it will be closed automatically if no further activity occurs in the next 30 days. If you want this PR to never become stale, please ask a PSC member to apply the "no stale" label.
It looks similar to something I developped, some monthes ago. However, I don't see the possibility to avoid right escalation. Or did I missed something ?
https://github.com/grap/grap-odoo-incubator/tree/16.0/user_limited_access_settings
@legalsylvain It looks a bit similar indeed, about rights escalation, we use theses modules with the ones in this PR https://github.com/OCA/server-backend/pull/349 so there is only a group of users who can edit user rights