Step-by-step guide

How to give agency access to WooCommerce

Last updated: August 2026

How to give agency access to WooCommerce: use WordPress user roles — the agency is added as a Shop manager or Administrator user, not the shared admin login. Open WordPress admin → Users → Add New, add the agency, choose the access level, and confirm. You never share a password and can remove access anytime.

Before you start

Have these ready — it's what onboarding stalls on:

Step-by-step

  1. In WordPress admin, go to Users → Add New.
  2. Enter the agency member's email and a username.
  3. Set the role to Shop manager (or Administrator if needed).
  4. Create the user.
  5. They receive an email to set their own password.
Where 90% of onboardings fail: Sharing the admin login gives full control and hides who changed what. Separate users fix both.

Which access level to grant

Grant the minimum the work needs. On WooCommerce, the levels are:

Access level / roleWhat it can do
AdministratorFull control of the whole site including plugins and users. Grant only if needed.
Shop managerManage the store (orders, products, reports) without touching site settings. Ideal for an ecommerce agency.
EditorManage content; limited store control.
Customer/SubscriberNot for agencies.

How long it takes, and who does what

1–2 minutes to create the user; they set their own password via email.

What you (the client) do

Open WordPress admin → Users → Add New and grant the access — a few minutes.

What the agency does

Accept and confirm from their side, then start work.

How to check it worked

Access is granted when:

If it doesn't work

The most common problems and how to fix them:

Agency needs store + site access

Grant Shop manager for store-only; Administrator if they also manage plugins/theme.

Shared admin login used instead

Create a separate user so you can see who did what and remove access cleanly.

Why you don't share a password

Create the agency their own user with their own password — never share the admin login. Delete or downgrade the user anytime.

The faster way: one link

Everything above is why agencies switch to a single link. HandItSafe requests exactly this WooCommerce access for you — the client approves through WooCommerce's official process in about three minutes, no password shared, and keeps a panel to remove it anytime. When the engagement ends, removing access is one tap with a full log.

FAQ

Giving WooCommerce access — questions

Shop manager vs Administrator?

Shop manager can run the store without touching site settings; Administrator has full control. Grant the minimum.

Do I share the admin password?

No. Create the agency their own user with their own password.

How do I remove WooCommerce access?

Users → delete the agency user. HandItSafe shows it in the panel.

Shop manager or Administrator?

Shop manager for store operations; Administrator only if they manage plugins, themes or the site itself.

How do I stop them accessing after we finish?

Delete their user under Users — instant and clean.

Keep reading

Related guides

Skip the whole thing — send one link.

HandItSafe requests exactly this access in one link. No passwords. Your client keeps a panel to remove it anytime.