User permissions
Description of user permissions
Overview
User permissions control which areas of the Yari Flow Dashboard a team member can access and which actions they can perform.
Permissions are assigned through roles. When creating or editing a role, select only the access required for that team’s responsibilities.
This allows you to create different permission levels for teams such as:
· Customer support
· Ecommerce
· Operations
· Finance
· Technical teams
· Administrators
Permission types
Most areas use one or more of the following permissions:
Permission
What it allows
Read
View the relevant page, records or settings
Create
Add new records or configurations
Update
Edit existing records or configurations
Delete
Remove existing records or configurations
Some areas include additional permissions:
· Login: Access a customer’s My Account experience from their customer record
· Edit Price: Change the price applied to an individual subscription
The number beside each area shows how many permissions are selected.
For example, Automations (1/4) means that one of the four available permissions has been enabled.
Available permission areas
Analytics
Controls access to subscription analytics, reports and performance information.
Automations
Controls access to creating and managing automated workflows.
Give editing access only to users responsible for maintaining automations, as changes may affect customer communications or subscription activity.
Billing
Controls access to the fees and account activity associated with the merchant’s Yari Flow account.
Cancellation Flow
Controls access to the standard Cancellation Flow and Cancellation AI Flow.
Editing access allows users to manage cancellation reasons, conditions, solutions and retention actions.
Collections
Controls access to collection information available within Yari Flow.
Customers
Controls access to customer records and their associated subscriptions.
The additional Login permission allows authorised users to access the customer’s My Account experience.
Delivery Profiles
Controls access to the delivery profiles used by subscription products and orders.
Changes may affect how subscription deliveries are scheduled or processed.
Integrations
Controls access to integrations connected to Yari Flow.
Editing access should normally be limited to administrators or technical users, as changes may affect data sharing and connected workflows.
Invoices
Controls access to the monthly invoices issued for the merchant’s Yari Flow account.
Orders
Controls access to subscription order records and available order-management actions.
Pricing Plans
Controls access to Pricing Plan configuration.
How they differ from Selling Plans and Selling Plan Groups.
Products
Controls access to product and variant information available in Yari Flow.
Product catalogue changes may still need to be completed in Shopify.
Roles
Controls access to creating and managing permission roles.
This is sensitive administrative access and should only be given to users responsible for account security and permissions.
Selling Plan Groups
Controls access to Selling Plan Groups, which organise the subscription options associated with products.
Changes may affect which subscription choices are available to customers.
Selling Plans
Controls access to the individual Selling Plans contained within Selling Plan Groups.
These plans may define billing frequency, delivery frequency and subscription discounts.
Shop Job Schedules
Controls access to scheduled background processes associated with the store.
This is a technical area and should normally be restricted to administrators or technical users.
Shop Settings
Controls access to account-wide Yari Flow settings.
Changes may affect subscription rules, billing behaviour, customer messages, payment retries and out-of-stock handling.
Restrict editing access to users who understand the effect of store-wide changes.
Subscriptions
Controls access to subscription records and management actions.
The separate Edit Price permission allows users to change subscription pricing. This should only be given to team members authorised to make commercial or pricing changes.
User Roles
Controls how roles are assigned to Yari Flow users.
Users
Controls access to team-member records and user management.
Editing access may allow users to change another user’s assigned role or account details.
Voucher Batches
Controls access to groups of vouchers created or managed together.
Changes may affect multiple vouchers, so editing access should only be given to users responsible for promotions or retention offers.
Vouchers
Controls access to individual vouchers and their configuration.
Recommended permission practices
When creating roles:
· Give users only the access required for their responsibilities
· Use Read access when editing is not necessary
· Restrict Billing and Invoices to authorised finance or administrative users
· Restrict Roles, User Roles and Users to administrators
· Restrict Integrations, Shop Settings and Shop Job Schedules to experienced users
· Give Edit Price access only to users authorised to change subscription pricing
· Review roles whenever a team member’s responsibilities change
· Remove access promptly when a user no longer requires it
Frequently asked questions
Are all permissions required?
No. Every permission is optional.
Select only the permissions required for the role you are creating.
Can different roles have different access to the same area?
Yes. For example, one role could only view Automations, while another could create, update and delete them.
What does the number beside a permission area mean?
It shows how many of the available permissions are selected.
For example:
· Subscriptions (1/3) means one of three permissions is selected
· Roles (0/4) means no permissions are selected
Should every user have administrative access?
No. Administrative access should only be given to users who need to manage account-wide settings, integrations, users or permissions.
What happens when a user does not have Read access?
The user should not be able to open or view that area of the Yari Flow Dashboard.