Shopify return "Access Denied" status when updating orders via axios request in backend

yanoandri
Shopify Partner
1 0 0

Hi,

We receive error response "Access Denied - You do not have permission to access this website" page, when we're about to update the order status in shopify admin dashboard

<!DOCTYPE html><html lang="en"><head><meta charset="utf-8"><meta name="referrer" content="never"><title>Access denied</title><style type="text/css">*{box-sizing:border-box;margin:0;padding:0}html{font-family:"Helvetica Neue",Helvetica,Arial,sans-serif;background:#f1f1f1;font-size:62.5%;color:#303030;min-height:100%}body{padding:0;margin:0;line-height:2.7rem}a{color:#303030;border-bottom:1px solid #303030;text-decoration:none;padding-bottom:1rem;transition:border-color .2s ease-in}a:hover{border-bottom-color:#a9a9a9}h1{font-size:1.8rem;font-weight:400;margin:0 0 1.4rem 0}p{font-size:1.5rem;margin:0}.page{padding:4rem 3.5rem;margin:0;display:flex;min-height:100vh;flex-direction:column}.text-container--main{flex:1;display:flex;align-items:start;margin-bottom:1.6rem}.action{border:1px solid #a9a9a9;padding:1.2rem 2.5rem;border-radius:6px;text-decoration:none;margin-top:1.6rem;display:inline-block;font-size:1.5rem;transition:border-color .2s ease-in}.action:hover{border-color:#000}@media all and (min-width:500px){.text-container--main{align-items:center}.page{padding:7.5rem 10.5rem}}</style></head><body class="status-error status-code-1009"><div class="page"><div class="text-container text-container--main"><div><h1 data-i18n="content-title">You do not have permission to access this website</h1></div></div></div></body></html><script>var t={cs:{title:"Přístup byl odepřen","content-title":"Nemáte oprávnění k přístupu k tomuto webu"},nb:{title:"Tilgang nektet","content-title":"Du har ikke tillatelse til å åpne dette nettstedet"},th:{title:"การเข้าถึงถูกปฏิเสธ","content-title":"คุณไม่มีสิทธิ์อนุญาตในการเข้าถึงเว็บไซต์นี้"},"pt-BR":{title:"Acesso negado","content-title":"Você não tem permissão para acessar este site"},es:{title:"Acceso denegado","content-title":"No tienes permiso para acceder a esta página web"},ko:{title:"액세스가 거부됨","content-title":"이 웹사이트에 액세스할 수 있는 권한이 없습니다"},da:{title:"Adgang nægtet","content-title":"Du har ikke tilladelse til at åbne dette website"},fi:{title:"Pääsy evätty","content-title":"Sinulla ei ole oikeuksia tämän verkkosivun käyttöön."},"pt-PT":{title:"Acesso negado","content-title":"Não tem permissão para aceder a este website"},de:{title:"Zugriff verweigert","content-title":"Du verfügst nicht über die entsprechende Berechtigung für den Zugriff auf diese Website"},it:{title:"Accesso negato","content-title":"Non hai l'autorizzazione per accedere a questo sito web"},pl:{title:"Odmowa dostępu","content-title":"Nie masz uprawnień dostępu do tej strony internetowej"},sv:{title:"Åtkomst nekad","content-title":"Du har inte behörighet att få tillgång till webbplatsen"},en:{title:"Access denied","content-title":"You do not have permission to access this website"},hi:{title:"पहुंच अस्वीकृत","content-title":"आपको इस वेबसाइट तक पहुंच प्राप्त करने की अनुमति नहीं है"},ja:{title:"アクセスが拒否されました","content-title":"このウェブサイトにアクセスする権限がありません"},fr:{title:"Accès refusé","content-title":"Vous n'avez pas l'autorisation d'accéder à ce site web"},"zh-TW":{title:"存取遭拒","content-title":"您沒有存取此網站的權限"},ms:{title:"Akses dinafikan","content-title":"Anda tidak mempunyai kebenaran untuk mengakses laman web ini"},tr:{title:"Erişim reddedildi","content-title":"Bu web sitesine erişim izniniz yok."},"zh-CN":{title:"访问被拒绝","content-title":"您无权访问此网站"},nl:{title:"Toegang geweigerd","content-title":"Je hebt geen toestemming voor toegang tot deze website"}},language=navigator.languages&&navigator.languages[0]||navigator.language||navigator.userLanguage||"en";for(var id in language=language.split("-")[0],translations=t[language]||t.en,translations)target=document.querySelector("[data-i18n="+id+"]"),null!=target&&(target.innerHTML=translations[id]);document.title=translations.title,t[language]&&document.getElementsByTagName("html")[0].setAttribute("lang",language)</script>

 

we receive this response while we requesting through this url to update the orders in Shopify dashboard

https://{store url}/offsite/{some random number}/callback

example : 

https://mystore.myshopify.com/offsite/1111111111/callback

 

Have anyone ever experience the same kind of issue? this issue just happened recently, while the existing store still can receive the success response, is there any configuration that needs to be unblocked in their store setting to gain the permissions?

Replies 0 (0)