Current files hide in email
The portal should make the latest permitted version obvious.
Client portal and member area development
Give each known client, member or trade customer one dependable place for current status, permitted files and next actions. A focused portal is usually £900 - £2,500.
For an existing WordPress site or a bespoke React, Node.js or PHP system. Identity provider, storage and other external fees remain separate.
North Street Kitchen
This identity resolves to this account before any record is shown.
No login and no real account
Choose a synthetic portal and switch between its overview, documents and requests. The demonstration contains no login, download, upload or stored information.
Buttons are examples only. No file is downloaded.
Actions are examples only. Nothing is submitted.
What a password-protected page leaves unresolved
A password on a page does not create a useful portal. Clients still search old email threads for the current file, ask for progress and send approvals without a dependable project reference. Shared links remain live too long, staff cannot see who has access and account recovery becomes an improvised support problem.
The portal should make the latest permitted version obvious.
Permission is checked on every record, not hidden by navigation alone.
One person cannot be traced, changed or removed safely.
Recovery needs an owned, tested and proportionate identity check.
An account has a complete life
Each invited person receives a specific identity and role. After suitable authentication, the portal resolves that identity to the permitted account, project, membership or trade record. Current documents, status, requests and actions share one view, while invitations, recovery, role changes, expiry and removal follow an auditable owner process.
Authentication confirms an identity. Authorisation still decides what that identity may see or do now.
The invitation expires and cannot quietly become a shared credential.
Recovery and accessible alternatives are part of the same design.
Sensitive changes can require a fresh high-confidence check.
Project closure, role change or departure follows a named owner process.
Choose the smallest useful portal
Best for a business that repeatedly shares changing documents, approvals, project status, member resources, quotes or account actions with known clients. Start with a contained status-and-file area when self-service is simple; use membership or bespoke workflow only when roles, payments, several organisations or operational actions justify it.
Current documents, approvals, progress and account actions in one contained view.
Best when the service remains personal.Resources, events, renewals and preferences follow the member’s current state.
Best for repeat access with clear expiry.Quotes, orders, projects, several users and role-specific approvals connect to private systems.
Best when self-service changes real operations.Strong access without hostile login design
Passkeys, email links, passwords, single sign-on or multi-factor authentication can all be appropriate in different situations. High-impact actions and suspicious access need stronger verification without forcing every visitor through unnecessary friction.
Connections checked before the quote
Ernest checks the CRM, project, membership, storage, invoice, payment and identity systems before promising a view or action. The portal should not create a second uncontrolled source of truth.
Every record request is authorised on the server
Uploads and downloads follow agreed type, size and retention rules
Provider failure keeps a recoverable support route
Authenticated application proof
Ernest built JoinedInbox, a React and Node application that brings several inboxes into one account with team tasks and labels. It demonstrates authenticated multi-user software used by small businesses; it is not presented as a client-portal case study.
Read the JoinedInbox recordMultiple inboxes, team tasks and labels inside one authenticated application.
React · Node · multi-user productAcceptance is the wrong user seeing nothing
Client portal price
The proposal confirms users, roles, records, actions, authentication, recovery, storage, connections and acceptance tests. The timeline follows that access and workflow audit.
See all website and system pricesPrice rises with several organisations, many roles, sensitive data, uploads, memberships, payments, large migration, complex approvals, reports or external APIs.
Support is optional. Identity, storage, email, payment or other providers may charge their own fees.
Before adding client logins
Only the account, project, membership, documents and actions permitted by their current role. The scope is designed from real examples and tested with two similar users to make sure one cannot reach the other’s records by changing a URL, search or file reference.
Not necessarily. The right method depends on risk and audience, and may include a password-manager-friendly login, email link, passkey, single sign-on or multi-factor authentication. The route must include safe recovery and an accessible alternative. I do not block paste, password managers or other browser assistance.
Yes, when file type, size, storage, malware handling, retention and notification rules are agreed. An approval records the person, item, version, decision and time. High-impact actions can require re-verification rather than treating an old browser session as permanent authority.
Yes, where the source system exposes a dependable API, event or export. The portal should present the permitted view and action while the operational system remains the source of truth. Product plans, provider fees and failure routes are checked before a connection is promised.
An owner can suspend or remove the individual identity, end active sessions and reassign any unfinished work. Membership expiry and project closure can remove access automatically after an agreed review period. Shared team passwords are avoided because they cannot identify or remove one person safely.
Yes, after a sample proves the identity, ownership, permission and file mappings. Old links and duplicate accounts need explicit treatment, and unnecessary files should not be copied merely because they exist. Volume, sensitivity and source quality affect the quote.
Bring two clients who should see different things
Show Ernest what clients ask for, where the current record lives and what must happen when access changes. You will know whether a contained area, membership portal or bespoke operational account is the right build.