Shopify staff access auditInstall

Shopify staff access audit and permission logs

Users and permissions is a snapshot. Staff, collaborators, and installed-app scopes drift after the last review.

A staff access audit scores those scopes — including AI apps that can read customer or order data — and keeps a permission log you can export. It does not revoke access or attest that the store is secure.

Install staff access audit

Live listing: apps.shopify.com/momiji-access-audit. Changelog: Shopify apps.

Adjacent jobs: PO box blocker · B2B purchase order · CRA duty records.

On this page

Listing What it is for Plans Install

Live listing

From the live listing

Quoted from the public Access Audit Guard App Store page. Nothing here invents ratings, install counts, or extra features.

Every installed app requests scopes - including new AI and agentic apps. This app classifies each granted scope, flags protected customer-data and broad-write access, and scores your store Low to High (higher is safer). Staff and collaborator reviews get overdue flags; drift alerts fire when scopes, owners, or costs change. Export CSV or PDF evidence. Manual app-cost tracking flags duplicate paid categories. First audit runs automatically on install. Run an access audit any time.

Jobs

What this audit is for

Staff and collaborator permission logs

Keep a review record of staff and collaborator access. The live listing states that reviews get overdue flags on a 30/90-day cadence — a permission log you can re-check without building a spreadsheet.

Installed app and AI access risk

Every installed app requests scopes, including AI shopping assistants. The app classifies granted scopes, flags protected customer-data and broad-write access, and scores the store Low to High (higher is safer).

Drift after the last audit

Drift alerts fire when scopes, owners, or costs change after a scheduled audit. Manual app-cost tracking flags duplicate paid categories.

Evidence you can hand to a reviewer

Export CSV on Pro or PDF on Business for internal reviews. The first audit runs automatically on install; you can run an access audit any time from the app.

Listing prices

Pay on install

Plan names and prices copied from the live listing. First-install plan is Free.

All charges are billed in USD. Recurring and usage-based charges are billed every 30 days.

First run

Install, then run the first audit

Two minutes after install, using only what the public listing already says.

  1. Open the Access Audit Guard listing and install it on the store that needs a staff access audit.
  2. Wait for the first audit — the listing states it runs automatically on install.
  3. Review staff and collaborator access, check which apps (including AI apps) can read or write customer data, and export CSV or PDF evidence on Pro or Business.

Install staff access audit

Problem-query guide: Staff permission drift after the last review is not caught by a one-time user list. No-install score: leftover Admin access checklist.

Access Audit Guard stores store-level audit metadata, app scope findings, manual access register entries, and report history. It does not store customer data bodies, customer order contents, screen recordings, or employee monitoring events. It does not provide attorney advice, security attestations, or automatic remediation. Merchants remain responsible for reviewing findings before changing staff access, collaborator access, or installed app subscriptions.