This lesson covers the SSP User Profile — the page under Getting Started → SSP User Profile on the ZIMRA Self-Service Portal (https://mytaxselfservice.zimra.co.zw) where a logged-in user maintains their own account particulars: the username, the phone number and the email address. It is a short page with outsized consequences, because those three fields are the rails on which the SSP's entire identity and recovery machinery runs: the username (or email) is the login identifier, the email is the destination for password-reset and creation links, and the phone and email carry the browser-verification codes demanded at login. A stale profile does not hurt on the day it goes stale; it hurts weeks later, at the precise moment the user is locked outside the portal and the recovery message is being delivered to a mailbox they can no longer open.
The lesson's central distinction — drilled since the Introduction to TaRMS lesson and made operational here — is user profile versus taxpayer profile. The SSP User Profile describes the human being who logs in: one person, one account, one set of contact details. The taxpayer profile, managed in the separate Taxpayer Information module, describes the legal person whose tax affairs are administered — its registered particulars, addresses, revenue heads and bank details. Changing your email on the SSP User Profile tells ZIMRA where to reach you; it does nothing to the taxpayer's registered address, and vice versa. Confusing the two pages is among the most common beginner errors in the portal, and this lesson maps exactly which life events belong to which page (the taxpayer side is treated fully in the next lesson, tarmsprofile).
Legally, the profile sits in the same derivative framework as the password (see tarmspassword): Section 5 of the Income Tax Act [Chapter 23:06] (secrecy) and Sections 53–61 (representative taxpayers and the public officer) assume each login maps to one identifiable, reachable person; Section 37A(10)–(11) makes submissions under that login legally operative. The identity fields captured at sign-up (name, national ID or passport, date of birth) were verified by ZIMRA against official records and are not casually editable in the way contact details are — a name change following marriage, or a correction of a mis-captured ID number, is an identity-record matter rather than a routine profile edit, and screen-level specifics on how the SSP handles it are flagged for verification below.
The governance payload of the lesson: treat profile currency as a standing control, not a one-off task. Every job change, phone change or mailbox migration is a same-week profile update; organisations should require corporate email addresses for staff SSP accounts, sweep profiles in the same quarterly review that audits Assignee Management grants, and remember that the profile belongs to the user — when staff leave, the organisation revokes their grants but cannot and should not commandeer their account. As the SSP's own help system was not reachable when this lesson was prepared, screen-level specifics are stated generally and flagged with verification notes.
