---
url: https://docs.reversesignal.com/permissions.md
---
# What ReverseSignal can access in your store

This article lists each permission ReverseSignal Returns asks for when you install it, and what the app uses it for.

## Where to see them in Shopify

In your Shopify admin, go to Settings → Apps and open ReverseSignal. Shopify shows the permissions the app has there, and the customer details it can see.

## What each permission is for

| Permission | What it covers | What the app uses it for |
|---|---|---|
| read\_orders | Orders | Finds an order by its number when you or your customer start a return. Reads what was bought, what it cost and what's been refunded. |
| read\_customers | Customers | Reads the name, email address and phone number of the customer on that order. |
| read\_products | Products | Not used yet. It's meant for exchanges, to look up the item your customer wants instead. |
| write\_returns | Returns | Not used yet. It's meant for creating and processing returns, refunds and exchanges in Shopify. |
| unauthenticated\_read\_product\_listings | Your storefront's public product listings | Lets the app read your logo and colors from Settings → Brand, so your returns portal looks like your store. The app reads nothing else with it. |
| customer\_read\_orders | Orders in your customers' accounts | Lets the Start a return link on each order in your customer's account read that order's number, so the link opens the right order. |

## Your customers' personal details

The app reads 4 of your customers' details from the order. Here's what it uses each one for:

* Name: your staff see who is returning an order, and the return records the customer it belongs to.
* Email address: your customer enters their order number and email address to start a return. The app checks both against the order before it shows anything.
* Phone number: kept with the return as a contact number for it.
* Physical address: the order's shipping address, where the returned items are sent back from.

For how long we keep these details, see our [privacy policy](https://reversesignal.com/privacy).

## What it doesn't ask for

* All of your orders. The app can only read orders from the last 60 days, so it can't find an older order. See [Start a return for a customer](./start-a-return).
* Your theme's code. The app doesn't ask to edit your theme. You add its Start a return block yourself, in the theme editor.
* Payment card details. The app doesn't read how your customers paid, only the amounts on the order.
