Control and oversight, without slowing the firm down.
A large practice does not need less structure as it grows, it needs structure that holds across every team. Esqase scopes access by role, routes approvals, and records what changed.
Set the rules, then read the record
A large firm cannot run on what everyone remembers. Roles set what each person can view, create, update, and delete, approvals hold work until someone signs off, and the log keeps the rest.
Limit a matter to named members. Everyone else sees Restricted matter wherever it appears, while the firm's billing totals stay complete.
Matter visibilityRequired approvals
Nothing goes out before the right person signs off.
Activity and audit logs
A record of who changed what, and when.
Open every matter the same way
Ten departments should not mean ten intake processes. Practice areas fix the stages a file moves through, custom fields hold what each team tracks, and the API connects your other systems.
Oversight, integration, and security.
Read about securityOversight
Activity timelines and audit logs
See who touched a matter, an invoice, or a document, and when, across the whole firm.
Full activity history
Not just the latest change, the whole trail.
Per-matter and firm-wide
Drill into one file or view the pattern.
Data
The Esqase API
Move contacts, matters, and leads between Esqase and the systems your firm runs.
Scoped API keys
Issued per integration, not one shared secret.
Built for your stack
Sync data instead of exporting it by hand.
Trust
Security and data protection
Controls monitored continuously, encryption in transit, and a Data Processing Agreement behind your firm's data.
Encryption
In transit, and for sensitive data at rest.
Access control
Every action scoped to a role, not just a login.
Set access, sign-off, and the audit trail.
Browse the docsFAQs
Roles, approvals, audit trails, security, and integrations.
How granular are roles and permissions?
Down to view, create, update, and delete, set per area of the product. A firm can build as many roles as it needs and give each member the one that matches their actual responsibilities, rather than choosing between an administrator and everyone else.
Can we require sign-off before an invoice or a document goes out?
Yes. Turn on approvals for either, choose which roles trigger a review, who is allowed to approve, and how many approvals an item needs. An item that requires one moves into review automatically, and editing an already-approved item restarts the review.
Is there an audit trail we can produce if asked?
Activity timelines record what happened to a matter, contact, lead, invoice, task, or document, including who made each change and when. A matter's timeline gathers everything filed under it, and logging is automatic, so the trail is there before anyone asks for it.
How does Esqase handle security?
Access is scoped to a role on every request, data is encrypted in transit, and sensitive data is encrypted at rest. Controls are monitored continuously, and a Data Processing Agreement backs how your firm's data is handled. The security page covers the program in detail.
Can Esqase connect to the systems we already run?
Yes, through the Esqase API. Issue a scoped API key per integration and sync contacts, matters, leads, practice areas, matter types, and your own custom fields with the systems the rest of the firm relies on. Billing, documents, and scheduling stay in the dashboard.
Can different departments run different processes?
Yes. Each practice area carries its own matter types and its own ordered stages, and a matter template opens a file with that area's team, billing setup, and starting tasks. Custom fields are defined per record type and added where each department needs them.