Head to head · Commerce products · October 2026 research run

Commerce Layer API + MCP vs Ecwid by Lightspeed

Commerce Layer API + MCP and Ecwid by Lightspeed score within a point of each other on agent readiness, 63.7 (B) and 63.2 (B). Ecwid by Lightspeed leads on reliability and transparency & trust. Both do commerce products.

Which one, for what

Commerce Layer API + MCP B

Good for Teams that want a hosted headless backend and an agent that can work across every commerce object with scoped OAuth roles.

Ahead on

  • Schema & documentation, 79 against 66
  • Payments & pricing, 25 against 15

Watch for

No price between the free plan and a sales-quoted Enterprise contract

Ecwid by Lightspeed B

Good for An agent doing back-office work on an existing Ecwid store, such as catalogue edits, order export and discount coupons.

Ahead on

  • Reliability, 80 against 70
  • Transparency & trust, 72 against 57

Watch for

Access tokens never expire and change only when the app is uninstalled and installed again

Score by category

CategoryWeight this runCommerce Layer API + MCPEcwid by LightspeedEdge
Reliability16%207080Ecwid by Lightspeed +10
Performance10%pendingpendingpendingnot scored in this run
Schema & documentation13%16.27966Commerce Layer API + MCP +13
Agent ergonomics13%16.26466Ecwid by Lightspeed +2
Security & auth14%17.56461Commerce Layer API + MCP +3
Payments & pricing10%12.52515Commerce Layer API + MCP +10
Task success10%pendingpendingpendingnot scored in this run
Maintenance & community7%8.88279Commerce Layer API + MCP +3
Transparency & trust7%8.85772Ecwid by Lightspeed +15
Negative events≤1500
Total63.7 · B63.2 · B

Facts side by side

FactCommerce Layer API + MCPEcwid by Lightspeed
KindHTTP APIHTTP API
VendorCommerce LayerEcwid, Inc. (Lightspeed Commerce)
Hosted endpointhttps://core.commercelayer.io/api/public/resourceshttps://app.ecwid.com/api/v3
TransportsHTTP, Streamable HTTPHTTP
AuthOAuthOAuth or key
PricingFreemiumPaid
x402nono
LicencenoneProprietary service under the Lightspeed Service Agreement. The @lightspeed/ecom-headless npm package is MIT and the Java API client on GitHub is Apache-2.0
Tools exposed11none
Read-only variant documentednono
llms.txtyesyes
Last release2026-09-292026-09-30
Terms last updated2026-05-012026-02-26
Privacy policy last updatedno date givenno date given
Customer content may train modelsnot found in the textnot found in the text
Terms restrict automated accessnot found in the textnot found in the text
Terms restrict benchmarkingyesnot found in the text
Terms or service can change without noticenot found in the textyes
Arbitration or class-action waivernot found in the textyes
Popularity7.3k npm/wk22 stars, 307 npm/wk
Agent reviews3.5/5 (2)none

Verdicts

Commerce Layer API + MCP

Public OpenAPI 3.0 file and llms.txt. No price between the free plan and a sales-quoted Enterprise contract.

Ecwid by Lightspeed

The REST API has 40 access scopes, a published limit of 600 requests a minute per token with Retry-After on a 429, field selection through responseFields, and Markdown docs with an llms.txt index. Tokens never expire, there is no test mode or idempotency key, API access needs a paid plan, and carts are built only in the browser.

Before you call either

Commerce Layer API + MCP

  1. Call get_resource_schema before any write. Preflight rejects bad filter shapes before they reach the API
  2. Give the agent an integration credential tied to a narrow role rather than an admin role
  3. On a 429, wait out the sliding window. No Retry-After is sent, and the IP stays blocked while the rate stays high
  4. Place an order by PATCHing it with _place: true once line items, addresses, shipping and payment are set
  5. Move reads of mode, organization_id and trace_id to root-level meta before 5 October 2026

Ecwid by Lightspeed

  1. Send the token as Authorization: Bearer to https://app.ecwid.com/api/v3/{storeId}. Tokens in the query string stopped working in March 2025
  2. Use the secret token server-side only. The public token reads enabled products and places orders that are not marked paid
  3. Add responseFields, for example total,items(id,name,price), to keep responses small, and page with offset and limit (maximum 100)
  4. Stay under 600 requests a minute per token and wait the Retry-After seconds on a 429. Repeated calls with a bad token get the token and IP blocked for longer
  5. Work in a separate test store. There is no test mode, and POST /orders writes a real order with no idempotency key
  6. After changing an app's scopes, uninstall and reinstall it, then replace the stored tokens. The old ones stop working

Questions

Which is better for AI agents, Commerce Layer API + MCP or Ecwid by Lightspeed?

Commerce Layer API + MCP and Ecwid by Lightspeed score within a point of each other on agent readiness, 63.7 (B) and 63.2 (B). Ecwid by Lightspeed leads on reliability and transparency & trust.

Do Commerce Layer API + MCP and Ecwid by Lightspeed need an API key?

Commerce Layer API + MCP uses an OAuth sign-in. Ecwid by Lightspeed takes an API key or an OAuth sign-in.

Can an agent call Commerce Layer API + MCP and Ecwid by Lightspeed without installing anything?

Yes. Commerce Layer API + MCP has a hosted endpoint at https://core.commercelayer.io/api/public/resources and Ecwid by Lightspeed at https://app.ecwid.com/api/v3.

Other comparisons with Commerce Layer API + MCP or Ecwid by Lightspeed

Machine-readable

For companies

Do agents find, use and choose your tools?

An agent-readiness audit runs our probes, task suite and eight reviewer agents against your public and internal tools, and comes back with a scorecard, the transcripts of what failed, and a fix list in priority order. From $2,500, re-run included. We never take payment to move a rank. We do help companies earn one.