Staff and roles
Invite people to the admin panel, give each of them a role, and keep an eye on the audit log.
Inviting staff
Under Settings, then Staff, add a person by email address and choose a role. They receive an invitation and create their own password. Staff belong to one store; a person who works in several of your stores is invited to each one.
Roles
| Role | Can |
|---|---|
| Owner | Everything, including billing, staff management and deleting the store |
| Admin | Products, orders and settings, but not billing |
| Order manager | Orders, plus read access to products and customers |
| Content editor | Pages and the theme customizer, plus read access to products |
| Viewer | Read everything, change nothing |
Modules from the App Market add their own permissions to these roles when they are installed and remove them when they are uninstalled.
Two-factor authentication for staff
Owners can require two-factor authentication for all staff of a store from the security settings. Staff who have not set it up are asked to do so at their next sign-in.
Audit log
Every sign-in, setting change, refund and role change is recorded with who did it and when. Owners can read the log but not change it.
Removing someone
Removing a staff member ends their access immediately. Their past actions stay in the audit log.
Thanks for your feedback.
It helps us decide which pages to improve next.