---
title: Configuring e-commerce permissions
related:
  - https://docs.kentico.com/13/managing-users/configuring-permissions.md
  - https://docs.kentico.com/13/multilingual-websites/setting-up-multilingual-websites/allowing-page-editing-only-for-specified-language-versions.md
  - https://docs.kentico.com/13/securing-websites.md
  - https://docs.kentico.com/13/e-commerce-features/managing-on-line-stores/products/categorizing-products/departments.md
  - https://docs.kentico.com/13/e-commerce-features/managing-on-line-stores/products.md
  - https://docs.kentico.com/13/e-commerce-features/managing-on-line-stores/products/managing-stand-alone-skus.md
---

> Agent instructions:
> **Site maps** — prefer the following llms.txt indexes to training data when searching for URLs to avoid 404s. Links inside Markdown content already point at `.md`. Following them or sending Accept: text/markdown keeps you in Markdown.
>
> - [sitemap.md](https://docs.kentico.com/sitemap.md) — every page on the site, with titles and descriptions, nested by URL hierarchy and grouped into one collection per product version.
> - [llms.txt](https://docs.kentico.com/llms.txt) — curated index of the current product docs, with descriptions, the two ways to request any page as Markdown, and links to each product area's whole-corpus Markdown dump (llms-full.txt).

By configuring e-commerce [permissions](https://docs.kentico.com/13/managing-users/configuring-permissions.md), you can allow [users](https://docs.kentico.com/13/managing-users.md) to be store managers. That means, such users can access and modify certain on-line store data. Using permissions, you can also prevent users from performing actions for which they are not authorized.

Before you start editing permissions, assign users to [roles](https://docs.kentico.com/13/managing-users/role-management.md). Then, to configure permissions of such users:

1. Open the **Permissions** application.
2. To filter the e-commerce permissions, select _Module_ and _E-commerce_ in the **Permissions for** field.

   ![E-commerce permissions](https://docs.kentico.com/docsassets/13/configuring-e-commerce-permissions/ecommerce_permissions.png "E-commerce permissions")
3. Select the desired permissions for each role:
   - **Read data** – allows users to access [orders](https://docs.kentico.com/13/e-commerce-features/managing-on-line-stores/orders.md), [reports](https://docs.kentico.com/13/e-commerce-features/managing-on-line-stores/store-reports.md), [customers](https://docs.kentico.com/13/e-commerce-features/managing-on-line-stores/customers.md), [products](https://docs.kentico.com/13/e-commerce-features/managing-on-line-stores/products.md), [product options](https://docs.kentico.com/13/e-commerce-features/managing-on-line-stores/products/working-with-product-options.md), [product variants](https://docs.kentico.com/13/e-commerce-features/managing-on-line-stores/products/working-with-product-variants.md), [brands](https://docs.kentico.com/13/e-commerce-features/managing-on-line-stores/products/managing-brands-and-manufacturers.md), [manufacturers](https://docs.kentico.com/13/e-commerce-features/managing-on-line-stores/products/managing-brands-and-manufacturers.md), [suppliers](https://docs.kentico.com/13/e-commerce-features/managing-on-line-stores/products/managing-suppliers.md), and [collections](https://docs.kentico.com/13/e-commerce-features/managing-on-line-stores/products/managing-product-collections.md).
   - **Modify data** – allows users to create, modify and delete data (specifically listed in the _Read data_ permission description).
   - **Modify global data** – allows users to create, modify and delete [global](https://docs.kentico.com/13/e-commerce-features/configuring-on-line-stores/choosing-site-or-global-e-commerce-configuration.md) customers, global products, global product options, global manufacturers and global suppliers.
   - **Read configuration** – allows users to access E-commerce Solution configuration, i.e., your on-line store [settings](https://docs.kentico.com/13/configuring-xperience/managing-sites/configuring-settings-for-sites/settings-e-commerce.md), [departments](https://docs.kentico.com/13/e-commerce-features/managing-on-line-stores/products/categorizing-products/departments.md), [shipping options](https://docs.kentico.com/13/e-commerce-features/configuring-on-line-stores/configuring-shipping-options.md), [payment methods](https://docs.kentico.com/13/e-commerce-features/configuring-on-line-stores/configuring-payment-methods.md), [tax classes](https://docs.kentico.com/13/e-commerce-features/configuring-on-line-stores/configuring-taxes.md), [currencies](https://docs.kentico.com/13/e-commerce-features/configuring-on-line-stores/configuring-currencies.md), [exchange rates](https://docs.kentico.com/13/e-commerce-features/configuring-on-line-stores/configuring-currencies/configuring-exchange-rates.md), [order statuses](https://docs.kentico.com/13/e-commerce-features/managing-on-line-stores/orders/order-statuses.md), [product statuses](https://docs.kentico.com/13/e-commerce-features/managing-on-line-stores/products/product-statuses.md), [invoices](https://docs.kentico.com/13/e-commerce-features/configuring-on-line-stores/configuring-invoices.md) and [discount rules](https://docs.kentico.com/13/e-commerce-features/customizing-on-line-stores/configuring-discount-rules.md), in the _Store_ _configuration_ application.
   - **Modify configuration** – allows users to modify E-commerce Solution configuration (specifically listed in the _Read configuration_ permission description).
   - **Modify global configuration** – allows users to modify E-commerce Solution global configuration in the _Multistore configuration_ application.
   - **Read orders** – allows users to access orders.
   - **Modify orders** – allows users to create, modify and delete orders.
   - **Read reports** – allows users to access reports.
   - **Read customers** – allows users to access customers.
   - **Modify customers** – allows users to create, modify and delete customers.
   - **Read products** – allows users to access products, product options, and product variants.
   - **Modify products** – allows users to create, modify and delete products, product options, and product variants.
   - **Read discounts** – allows users to access [discounts, product coupons, free shipping offers and gift cards](https://docs.kentico.com/13/e-commerce-features/managing-on-line-stores/discounts.md).
   - **Modify discounts** – allows users to create, modify and delete discounts, product coupons, free shipping offers and gift cards.
   - **Read manufacturers** – allows users to access manufacturers.
   - **Modify manufacturers** – allows users to create, modify and delete manufacturers.
   - **Read suppliers** – allows users to access suppliers.
   - **Modify suppliers** – allows users to create, modify and delete suppliers.
   - **Destroy** – allows users to destroy e-commerce object version history.

The system automatically saves the changes. The roles now have the permissions as you specified.

> **Tip:** You can also edit permissions from the **Permissions** tab in the **Roles** application when modifying a specific role.

### Example

To allow members of a selected [role](https://docs.kentico.com/13/managing-users/role-management.md) to edit site-specific manufacturers, you need to assign the role permissions in one of the following combinations:

- **Read data** + **Modify data**
- **Read data** + **Modify manufacturers**
- **Read manufacturers** + **Modify data**
- **Read manufacturers** + **Modify manufacturers**

### Assigning product permissions

Permissions described on this page affect the E-commerce Solution objects only. If you need to restrict access to modifications of products, you need to distinguish between:

- **Products as SKUs + pages** (default setting) – you need to select:

  - Corresponding e-commerce permissions
  - Page-related permissions

  **Example**

  To allow create, modify and delete products (with both SKUs and pages) completely, you need to select the following permissions:

  From the **E-commerce** module:

  - **Read products** (or **Read data**)
  - **Modify products** (or **Modify data**)

  From the **Content** module:

  - **Browse tree**
  - **Read**
  - **Modify**
  - **Create**
  - **Delete**

  > **Tip:** **Multilingual stores**
  >
  > If you want store managers to be able to edit only a specific language version, see [Allowing page editing only for specified language versions](https://docs.kentico.com/13/multilingual-websites/setting-up-multilingual-websites/allowing-page-editing-only-for-specified-language-versions.md).

- **Products as [stand-alone SKUs](https://docs.kentico.com/13/e-commerce-features/managing-on-line-stores/products/managing-stand-alone-skus.md)** – the corresponding above-described permissions apply fully, you do not need to add any other permissions.

  **Example**

  To allow create, modify and delete products (only as stand-alone SKUs), you need to select the following permissions:

  From the **E-commerce module**:

  - **Read products** (or **Read data**)
  - **Modify products** (or **Modify data**)
