Configure QC Backup Manager Administrator Permissions in Joomla

QC Backup Manager uses Joomla ACL so you can separate routine backup work from sensitive actions such as viewing Recovery PINs, deleting backup data, changing destinations, editing templates, and operating File Valet.

Plan entitlement and Joomla permissions are independent. A feature can be included in the site's QCBM tier while a particular administrator is still denied that action by ACL.

Open the QCBM Permission Settings

Use Joomla's component-permission interface for QC Backup Manager and select the administrator group you want to configure. Depending on your Joomla administrator layout, you may reach component permissions from the component Options/Permissions interface or from Joomla's global permissions configuration.

Test permissions with an account that actually belongs to the target group. Joomla ACL inheritance can produce a different result from what you expect by looking at one row in isolation.

Core Backup Permissions

  • Create backups — create manual Backup Sets.
  • Download backups — download QCBM backup/recovery files.
  • Delete backups — remove local QCBM backup files.
  • Export backups — send verified Backup Sets to configured off-site destinations.
  • View Recovery PINs — reveal the Recovery PIN assigned to a Backup Set.

For a staff member who only needs to create routine backups, do not automatically grant deletion, export-destination management, or Recovery PIN visibility.

Configuration and Operations Permissions

  • Manage settings and licensing — change QCBM settings and refresh entitlement.
  • Manage backup profiles — add, edit, publish, and delete Profiles.
  • Manage export destinations — create, test, connect, disconnect, enable, and delete destinations.
  • Run scheduled operations — manually run scheduled backup and retention work.
  • View reports and logs — view or export reports, logs, export history, and audit records.
  • Delete report and log history — permanently clear stored operational history.
  • Run integrity checks and safe repairs — run QCBM data/file integrity checks and safe metadata repairs.
  • Manage email templates — edit QCBM templates and send test messages.

File Valet Permissions

File Valet has separate permissions for viewing the workspace and technical details, copying files off-site, parking files, retrieving parked files, removing verified local files, and deleting remote File Valet packages. Grant these only to administrators who are responsible for storage management because these actions can move or remove real site files.

Do Not Use Hidden Restore ACL as a Normal Customer Workflow

The installed component contains internal and compatibility restore-related ACL actions, but normal customer recovery is performed with the standalone PIN-protected Recovery Runner contained in a Recovery Package. Do not build ordinary staff roles around internal restore-execution permissions unless QuantaCade documentation for a specific current workflow tells you to do so.

Recommended Role Pattern

  • Backup operator: create backups, view reports/logs, and optionally download backups.
  • Backup administrator: add Profile, destination, scheduler, integrity, and template-management permissions as required.
  • Full site administrator: reserve Recovery PIN visibility, destructive deletion, and File Valet removal actions for trusted administrators who genuinely need them.

Verify the Permissions

  1. Sign in with a test account from the configured Joomla group.
  2. Open QCBM and confirm the intended tabs and controls are available.
  3. Attempt one permitted action and one action that should be denied.
  4. Confirm the denial is an ACL restriction rather than an entitlement restriction before changing the role again.

Community Discussion

Want to compare workflows, share practical tips, or discuss how you use this QCBM feature? Visit the QC Backup Manager Community. For private support, bug reports, account-specific issues, or feature requests, use the QuantaCade support system.