Start your free 14-day trial
Product Job Scheduling & RotasInvoicing & BACSHealth & SafetyStaff Mobile AppAnalytics & Reporting
Solutions Commercial CleaningDomestic CleaningEnd of TenancyFacilities ManagementWindow Cleaning
Free tools Cleaning Quote CalculatorPrice Per m² CalculatorUK VAT CalculatorProfit Margin CalculatorTrue Cost of a CleanerHoliday Entitlement CalculatorContract Tender CalculatorClient Lifetime Value All 14 free tools →
Learn How to start a cleaning businessHow to price cleaning jobsHow to win cleaning contractsHealth & safety for cleaners CleanFlo vs JobberCleanFlo vs ZenMaid
Browse all guides

Your account and security

There are two kinds of account in CleanFlo and one of them can see everything. This is how you look after yours, how your cleaners get theirs, and what the product genuinely does and does not do about security.

In the app: Settings Open CleanFlo
On this page

The second tab of Settings is My Account, headed with the subtitle "Update your personal details and login credentials." It holds three fields and two save buttons, and that is the whole of it. Everything else about security in CleanFlo happens somewhere other than a settings screen, which is worth understanding before you go looking for options that are not there.

The My Account tab

app.cleanflo.io/settings?tab=account
Search everything… ⌘K Settings
Settings

Manage your company and account

CompanyMy AccountBillingData Export
My Account
Update your personal details and login credentials.
Full name Sarah Brennan
Email address sarah@brennancleaning.co.uk contact support to change email
Discard Save changes
Change password
Leave blank if you don't want to change your password.
New password At least 8 characters
Confirm new password Repeat new password
Discard Save changes
My Account. Two independent save bars: the top one saves your name, the bottom one changes your password. Changing one does not touch the other.
Full name
Yours, not the company's. It is the name on your messages, the initials in the sidebar avatar, and the actor name on activity rows. Blank is rejected with "Name is required." A good save toasts "Profile saved".
Email address
Shown but disabled, with the hint "contact support to change email" inside the label. This is your login, and changing it means moving an authentication identity, which is a support job rather than a form.
New password and Confirm new password
Both blank by default. The eye button inside the first box reveals both fields at once, which is the right behaviour when you are typing a password you have just invented.

The password rule is one rule: at least eight characters. There is no complexity requirement, no expiry, no history check and no ban list. The two things that can stop a change are both spelled out in the save bar in red.

Password must be at least 8 characters.
Passwords do not match.
Saved
The three things the password save bar can say. The green tick is the only confirmation you get on screen; a toast reading "Password updated" appears alongside it.

If your login has expired in the background while the tab sat open, the save bar tells you rather than failing quietly: "Your session has expired. Sign in again to save." Nothing is lost, but the form has to be resubmitted after signing back in.

What CleanFlo does not have

This section exists because assuming a security feature is present is worse than knowing it is absent. None of the following is in the product.

  • No two-factor authentication. There is no authenticator app, no SMS code and no backup codes. Your password is the whole of your login.
  • No session list and no sign-out-everywhere. You cannot see which devices are signed in, and you cannot remotely end a session. Changing your password is the nearest lever you have.
  • No audit log. The Activity tab of the notification feed shows recent events, but it is a feed rather than a tamper-evident record, and it does not go back indefinitely.
  • No roles or permissions screen. There are exactly two kinds of account, and neither can be reshaped.
  • No account deletion button. There is no danger zone anywhere in Settings.

What it does have is worth stating in the same breath. Data is held on servers in the EU and encrypted at rest with AES-256. Every table is protected by row-level security keyed to your company, so a query from one account physically cannot return another company's rows. Signing out is a real button, in the account row at the very bottom of the sidebar.

Sarah Brennan Brennan Cleaning Ltd Log out
Log out
The account row at the foot of the sidebar. Your initials, your name, your company underneath, and one menu item.

Owner and cleaner: who sees what

Every account is one of two kinds, and the difference is absolute rather than a matter of degree.

OwnerCleaner
Signs in toThe web app, all fourteen screensThe phone app only
Sees the scheduleEvery job for every cleanerOnly jobs assigned to them
Sees clients and locationsThe full record, contacts and allThe site and access notes for their own jobs
Sees moneyQuotes, invoices, revenue, reportsNothing. No prices anywhere
Sees other staffThe whole team and their performanceOnly colleagues in shared channels
Sees inventory and equipmentThe full registerWhat they have on loan, and can request supplies
Sees health and safetyEvery incident, audit and risk assessmentCan report an incident from a job
SettingsAll four tabsNone. Their own profile lives on the Me tab

It is enforced at the front door rather than by hiding menu items. A cleaner who signs in on a laptop and types the address of the invoicing screen is redirected straight to the phone app, and the database refuses the queries behind it regardless.

09:41
Me
Sync
Sync Everything is saved
Your kit
Equipment 1 item on loan 1
Account
Name Aisha Nowak
Email aisha@brennanclean.co.uk
Company Brennan Cleaning Ltd
Security
Change Password
Sign Out
Everything is saved
Jobs History My Time Messages Me
The whole of a cleaner's world: five tabs, their own jobs, and their own profile, set out as ruled lines on the paper rather than as a stack of panels. There is no route from here to a client list or an invoice.

How a cleaner gets a login

There is no PIN anywhere in CleanFlo, and no shared device code. A cleaner has a real account with an email address and a password, the same as you. There are two routes to creating one, offered as a choice under the legend "How should they get in?" at the top of the Add Staff Member drawer.

Add Staff Member
How should they get in? Set a password You choose a temporary password and we email it to them. Fastest if they are with you now. Send an invite They get a link and choose their own password. Nothing to read out, no password in an inbox.
Full Name * e.g. Sarah Mills
Email Address * sarah@example.com
Phone +44 7700 900000 optional
Job Title e.g. Cleaning Pro optional
Login Password Kp7$mQr2Xtvn4B
CancelCreate Account
Adding a cleaner. "Set a password" is the default because it is the fast route when the new starter is standing next to you; the generated password is 14 characters and avoids glyphs that look alike when read aloud.
Set a password
The account is created immediately and the password is emailed to them. The suggested password is generated from a cryptographic random source, is 14 characters long, and deliberately omits zero, capital O, one, lower-case L and capital I, because these get read out over the phone and typed on a phone keyboard.
Send an invite
No account exists yet. A pending invite is written and you get a shareable link. They open it, choose their own password, and the account is created at that moment. The link is good for 14 days.

The invite route is the better one for anybody who is not in the room, and not only for security. An invite can be pushed through WhatsApp or SMS from your own phone, which is the channel a new hire actually reads, rather than an email from a sender they have never heard of about software they have not agreed to use. Pending invites get their own tab on the Staff screen so you can see who never set themselves up, and each one can be resent or revoked.

If someone loses their password, the Staff screen has a Resend Login Credentials drawer: you set a new password and it is emailed to them. There is no self-service reset link inside the cleaner app.

When someone leaves

Deactivate them on the Staff screen

Deactivating removes their access immediately. Their record, their job history and their messages all stay, which is what you want if a question comes up afterwards.

Get the equipment back

Open Equipment, filter to Loaned, and see what is out in their name. Confirm each return as it comes back so the register is honest.

Reassign their jobs

Deactivating does not unassign anything. Anything still booked to them stays booked to them until you move it, and it will keep showing on the schedule.

Leave the conversations alone

Their threads and channel messages stay in your account. That is the point of running team messaging here rather than in a group chat on their personal phone.

Common questions

How do I change the email address I log in with?
You cannot do it yourself. The field is disabled on purpose, with the hint "contact support to change email" in its label, because moving a login identity is not something a form should do unattended. Raise a ticket from Support and we will move it.
Is there two-factor authentication?
No. There is no 2FA, no authenticator app support and no SMS codes anywhere in CleanFlo. Your password is the whole of your login, which is a reason to use a long one from a password manager rather than one you can remember.
Can I give someone access to the schedule without showing them the money?
No. There are two account types: owner, who sees every screen including revenue and invoices, and cleaner, who is redirected to the phone app and never sees a price. There is no supervisor or office-admin role in between.
A cleaner has forgotten their password. What do I do?
Open their record on the Staff screen and use Resend Login Credentials. You set a new password and it is emailed to them. There is no self-service forgotten-password link inside the cleaner app.