Role-based access control and org management for partners
Source: Shopify Dev Changelog
Shopify Introduces Role-Based Access Control for Partner Organizations
Shopify has restructured how partner organizations manage users and store access, replacing individual permission configurations with a role-based access control system.
What Changed
The Partner Dashboard now uses predefined roles instead of granular permission settings. Shopify provides seven system roles covering organization administration, store access, app development, and collaborator permissions. Partners can also create custom roles for specific organizational needs.
The organizational hierarchy now designates one Organization Owner with multiple administrators below. This replaces the previous flat permission structure where multiple users could hold equivalent access levels.
Impact on App Developers
Development teams can now assign roles that match their workflow structure. A developer working exclusively on app code receives different permissions than a team member managing merchant relationships or handling billing operations.
The system roles separate concerns between app development activities and store management tasks. This separation reduces the risk of accidental changes to production stores while developers test integrations or build new features.
Implementation Considerations
Existing partner organizations need to review current user permissions and map them to the new role structure. Teams with complex permission requirements should evaluate whether system roles meet their needs or if custom roles are necessary.
Organizations with multiple developers should establish role assignment policies before the transition completes. The single Organization Owner model requires partners to designate one primary administrator, which may affect existing governance structures in larger development agencies.
Stay in the loop
Get Shopify ecosystem news and positioning insights for app founders.