Jandex is a reporting layer on top of your Klaviyo account. The relationship is almost entirely one-directional: Jandex reads from Klaviyo to build your dashboard, and writes back only when you explicitly choose to.
This table matches the permissions Klaviyo itself shows you on the consent screen when you connect — wording included, so there's no gap between what you approve and what's documented here.
| Object | Permission granted | What Jandex does with it |
|---|---|---|
| Accounts | View account details | Confirms which Klaviyo account is connected. |
| Campaigns | View campaigns | Reports sends, opens, clicks, and attributed revenue. |
| Events | View events | Reads order and engagement events behind your reporting. |
| Metrics | View metrics | Reads the order/conversion metric your account is already configured with, so revenue attribution matches Klaviyo. |
| Profiles | View profiles | Reads profile data behind RFM segmentation. Identifiers are stored hashed; no plaintext customer email addresses are stored. |
| Flows | Create, view, edit, and delete flows | Jandex only reads flow performance today (rolled up per flow: welcome, abandoned cart, browse abandonment, post purchase, win back, and custom flows). It does not create, edit, or delete flows. This permission level is requested for upcoming flow-building features. |
| List | Create, view, edit, and delete lists and list memberships | Used today: pushing a Jandex-built RFM segment creates or updates a List in your Klaviyo account containing the matching profiles. |
| Segments | Create, view, edit, and delete segments and segment memberships | Requested to display your existing Klaviyo segments inside Jandex. Jandex does not create or modify Klaviyo segments today. |
The only write Jandex performs today is at your explicit action: from the Segments page, you can push a Jandex-built RFM segment (for example "Cannot Lose Them" or "At Risk") to Klaviyo. This creates or updates a List in your Klaviyo account containing the matching profiles by identifier. No campaign, flow, or message content is created or altered by this action, and it never runs automatically or on a schedule — only when you click Push.
For how the connection itself is secured and how to revoke it, see Data, privacy, and security and Disconnecting Jandex from Klaviyo.