What clients see
When a client signs in (or clicks the link in an invoice email), they land in a portal session scoped to their record. They see:- Outstanding invoices — All unpaid invoices, with payment buttons and a Download PDF link on each invoice
- Payments — A searchable history of every payment they’ve made, exportable to CSV (shown when you enable it — see Payment history)
- Contracts — Status of any contracts they’re a signer on (pending, executed, voided)
- Subscriptions — Active recurring services with next billing dates
- Statements — Downloadable account statements (PDF) for any date range
- Saved payment methods — Cards or ACH on file, with edit/remove controls
- Live chat — Your helpdesk chat launcher, already signed in as them (shown when you enable it — see Live chat)
How clients sign in
Sign-in is passwordless. No passwords exist anywhere in the flow, so there is nothing for clients to forget and nothing for you to reset.The client enters their email
They receive a branded email
One click and they're in
Appearance
The Appearance section of portal settings controls how the portal looks and what contact details clients see:billing.youragency.com, see Use Your Own Domain for Billing.
Sign-in and invite emails
The Emails section of portal settings lets you make both portal emails your own:- Customize the subject and body of the sign-in email and the invite email, with merge tags for personalization
- Send a test to yourself before any client sees the result
- Choose the sender: Hiveku’s address, or your own verified email domain
Choosing what clients can do
Every portal capability is a toggle under Commerce → Settings → Client portal → Access & permissions, grouped by what it lets clients do:Editing saved cards
Clients can update a saved card’s expiry date and billing address from Payment methods (the pencil icon on the card); this is on by default, and you can turn it off under Self-service. Changes are verified with the card processor immediately.Paying an invoice through the portal
For the client, paying an invoice looks like:- Click the link in the invoice email
- Land on the portal showing their outstanding invoice
- Click Pay Now
- Pick a saved payment method or enter a new card
- Submit — payment processes through Stripe or Authorize.Net
- See the invoice flip to
paidimmediately, with a receipt emailed to them
Payment history in the portal
Turn on See their payment history under Commerce → Settings → Client portal → Access & permissions to add a Payments tab to the portal. It’s a searchable, sortable, paginated list of every payment the client has made — amount, date, method, and the invoice it paid. Like the other portal lists, it has an Export CSV button. The export honors the client’s current search and status filter, so the file matches what’s on screen — handy when their accountant asks for “all payments this year” and they can pull it themselves instead of emailing you.Saved payment methods
Clients can save a card or ACH (where supported) for future use. Saved methods are stored at the processor (Stripe Customer or Authorize.Net Customer Profile) — Hiveku stores only the reference, not the card data. This keeps your PCI scope minimal. Clients can:- Add a new payment method
- Set a default
- Remove a method
- See the masked last-4 digits of each saved card
Subscriptions in the portal
For clients with active subscriptions, the portal shows:- The subscription’s plan and price
- Next billing date
- Upgrade/downgrade options (if you’ve enabled self-serve plan changes)
- Cancel option (if you’ve enabled self-serve cancellation)
Contracts in the portal
If a client is a signer on a sent contract, the portal shows it under Documents. They can:- Open the contract and see where every signer stands
- Click Review & sign when it is their turn
- Resume signing if they started but didn’t finish
- Download the executed PDF once all signers complete
- See the audit trail for any executed contract
Statements
The portal supports downloadable statements:- Date range — Custom from/to dates
- Format — PDF or CSV
- Contents — Invoices issued, payments received, current balance
Live chat in the portal
If your account uses the helpdesk, you can put your live-chat launcher inside the portal. Turn on Show the live-chat widget under Commerce → Settings → Client portal → Access & permissions. What makes portal chat better than a chat widget on your website:- No identify step. The client is already signed in to the portal, so the chat opens as them — no “enter your name and email” form, no anonymous visitors.
- Conversations become tickets. Each chat opens a ticket in your helpdesk, linked to the client’s contact record, so your team sees who’s asking and their billing context.
- Conversation history persists. Returning to the portal reopens their existing conversation instead of starting a new one.
Security
- Sign-in links are single-use and short-lived. Each link expires after 15 minutes or on first use; the client requests a fresh one if needed.
- TLS-only. All portal traffic over HTTPS.
- PCI scope is the processor’s. Card data never touches Hiveku servers — it’s tokenized client-side and stored at Stripe/Authorize.Net.
- Email verification. Sign-in links go to the email on file; clients can’t redirect them.
- IP and user-agent logging. Each session logs the IP and browser used, viewable in the client’s audit log.
Portal activity
The Portal activity card under Commerce → Settings → Client portal → Contacts & activity answers “who is actually using this?”: who has access, when each contact last signed in, how many sessions are live right now, and recent portal events. Each list has a View all quick-look popup for the full picture.Managing client contacts
The people who can sign in to your portal are managed under Commerce → Settings → Client portal → Contacts & activity. The Client contacts card lists everyone with portal access and lets you:- Add a contact — Click New contact to create one without leaving portal settings
- Edit a contact — Fix a name, phone, job title, or email in place
- Send sign-in links in bulk — Select multiple contacts and send each their own sign-in link in one action
- Remove a contact — Removing a contact also revokes their portal access
- Filter and find: The list filters by lifecycle stage (it defaults to customers), a quick-look popup shows a contact’s details in place, and you can jump straight to the contact in CRM
Multiple billing contacts
A client (especially an enterprise client) might need multiple people to access the portal — accounts payable, the project lead, the executive sponsor. Add multiple billing contacts on the company record. Each signs in with their own email and gets their own session, scoped to the same company’s data. The audit log shows which contact viewed which document, useful for tracking who pulled a statement or paid an invoice.Inviting clients to the portal
A sign-in link gets a client into the portal, but an invite is the better first touch — it’s a welcome email that explains what the portal is before asking them to click anything.Open the contact's access panel
Click Invite to portal
Customize the invite copy (optional)
Members: clients manage their own team
The Members tab (on by default, under the Members section of Access & permissions) shows clients everyone at their company who can use the portal, with two roles.Changing a sign-in email
A client’s email address is their portal identity, so changing it requires proving control of both mailboxes. From the Members tab, the client clicks Change email, receives a 6-digit code at their current address, then a second code at the new address. Only after both codes are verified does the email change, and every other signed-in device is signed out. Nobody else can change a member’s email, not even a portal admin or your own team from this flow.See the portal as your client
“What does my client actually see?” is the most common portal support question. Answer it directly: click Open as on any contact’s access panel to open the portal in a new tab, signed in as that client.- It’s exactly their view. Same capabilities, same invoices, same branding — if a tab is hidden for them, it’s hidden for you.
- It’s read-only. An amber banner across the top reads “Viewing as [client name] — payments and changes are disabled.” Every action that would change anything — paying an invoice, editing a card, accepting an estimate — is blocked while you’re viewing as them.
- It’s short-lived. The view-as session expires after 60 minutes and doesn’t renew itself. Click Exit in the banner to end it sooner.
Disabling the portal for a client
If a client requests no portal access (rare, but happens with strict-security industries), you can disable portal links for their account. Invoices then send via PDF attachment only, with manual payment instructions. Toggle in the client’s settings.Troubleshooting
Client says the sign-in link doesn't work
Client says the sign-in link doesn't work
Client can't see the new invoice
Client can't see the new invoice
Custom domain shows a security warning or won't verify
Custom domain shows a security warning or won't verify
Payment method updates aren't sticking
Payment method updates aren't sticking
Client wants to delete their account from the portal
Client wants to delete their account from the portal
The Payments tab isn't showing in the portal
The Payments tab isn't showing in the portal
The chat launcher isn't showing in the portal
The chat launcher isn't showing in the portal
A CSV export doesn't match what the client sees on screen
A CSV export doesn't match what the client sees on screen