New AI Agent can now build your knowledge base, connect channels and invite agents — all by chat Try it now
Help homeProductPricingBlog
Start freeLog in

WordPress and WooCommerce data and permissions

Understand what the YundaDesk plugin sends, what WooCommerce data it reads, and what it never changes.

Updated 2026-08-05

Walk through the demoDemo data
App StoreDemo data
Search apps / vendors / capabilitiesDemo data
Self-Service2 apps
Help CenterBy YundaDesk
Pro
Open
WordPressBy YundaDesk
Installed

Install one YundaDesk plugin to add live chat, AI support, and a secure Widget binding to a WordPress site.

Manage sites
CRM2 apps
WooCommerceBy YundaDesk
Installed

Use the same YundaDesk WordPress plugin; after WooCommerce is detected and authorized read-only, sync store, customer, order, product, and current cart context.

View store status
BigCommerceBy BigCommerce
Installed

Connect a BigCommerce store, sync customer order context, and show recent orders in the workspace sidebar.

View store statusUninstall
Step 1 / 4
WordPress base scope

The base connection creates a site binding and public Widget configuration. It does not read WooCommerce store data.

YundaDesk separates the WordPress site connection from WooCommerce store access. Connecting WordPress enables the Widget. WooCommerce data remains off until a store administrator approves read-only access.

WordPress site connection#

When an administrator starts the connection, the plugin sends the site address, a random site identifier, and the installed YundaDesk, WordPress, PHP, and optional WooCommerce versions. After connection, a limited status check reports version and availability information so the site can show whether the integration is healthy.

The storefront loads YundaDesk's hosted Widget only after connection. Messages and details that visitors choose to submit through the Widget are processed as customer-support data.

WooCommerce read-only data#

ResourceWhat YundaDesk usesImportant boundary
StoreCurrency and non-sensitive store informationNo store settings are changed
CustomerEmail address, display name, and country or regionPhone numbers are not retained for this integration
Product and variationProduct name, SKU, price, inventory, and variation informationProducts and stock are never edited
OrderOrder number, amount, currency, status, line items, and permitted identity fieldsShipping address and phone number are not retained
CartCurrent items, SKU, quantity, amount, currency, and page contextSent only for a visitor with an active Widget conversation; no address, email, or phone

YundaDesk does not edit orders, issue refunds, change customers, or modify products. WooCommerce Core does not provide an authoritative abandoned-checkout record, so YundaDesk does not invent one from cart activity.

Synchronization and events#

The initial read is paginated. Later reads use changed-resource markers so the same object is not duplicated. WooCommerce events notify YundaDesk that a supported customer, product, or order changed; the event contains a minimal identifier rather than the full business record. YundaDesk then reads the current version from the store.

If read permission is revoked or expires, the WooCommerce section displays Reauthorization required and store reads stop until an administrator approves read-only access again.

External services#

The plugin uses these YundaDesk services after you connect it:

  • app.yundadesk.com for administrator sign-in and workspace confirmation;
  • api.yundadesk.com for the site connection, status, privacy requests, and WooCommerce synchronization;
  • cdn.yundadesk.com for the public Widget loader.

Review the YundaDesk Privacy Policy and Terms of Service. Add an appropriate disclosure to your own site's privacy policy before serving visitors.

Privacy responsibility#

The plugin supplies suggested privacy-policy text and integrates with WordPress personal-data tools. These tools help site administrators respond to requests, but installing the plugin does not automatically make a site compliant with GDPR, CCPA, or any other law. Your organization remains responsible for the legal basis, notices, requester verification, retention choices, and responses required for its site.

Didn't find your answer?

Start free and try the real product, or reach out — humans are as online as the AI.