Head to head · Commerce products · October 2026 research run
Ecwid by Lightspeed vs Medusa API + MCP
Medusa API + MCP and Ecwid by Lightspeed score within a point of each other on agent readiness, 63.5 (B) and 63.2 (B). Ecwid by Lightspeed leads on reliability and security & auth. Both do commerce products.
Which one, for what
Good for An agent doing back-office work on an existing Ecwid store, such as catalogue edits, order export and discount coupons.
Ahead on
- Reliability, 80 against 55
- Security & auth, 61 against 40
Also in its favour
- A hosted endpoint, with nothing to install
Watch for
Access tokens never expire and change only when the app is uninstalled and installed again
Good for Teams that want to own a TypeScript commerce backend and extend it with their own routes and workflows.
Ahead on
- Schema & documentation, 81 against 66
- Agent ergonomics, 72 against 66
- Payments & pricing, 50 against 15
- Maintenance & community, 93 against 79
Also in its favour
- Open source
Watch for
The official MCP server is docs-only and limited to Cloud accounts
Score by category
| Category | Weight this run | Ecwid by Lightspeed | Medusa API + MCP | Edge |
|---|---|---|---|---|
| Reliability | 16%20 | 80 | 55 | Ecwid by Lightspeed +25 |
| Performance | 10%pending | pending | pending | not scored in this run |
| Schema & documentation | 13%16.2 | 66 | 81 | Medusa API + MCP +15 |
| Agent ergonomics | 13%16.2 | 66 | 72 | Medusa API + MCP +6 |
| Security & auth | 14%17.5 | 61 | 40 | Ecwid by Lightspeed +21 |
| Payments & pricing | 10%12.5 | 15 | 50 | Medusa API + MCP +35 |
| Task success | 10%pending | pending | pending | not scored in this run |
| Maintenance & community | 7%8.8 | 79 | 93 | Medusa API + MCP +14 |
| Transparency & trust | 7%8.8 | 72 | 71 | Ecwid by Lightspeed +1 |
| Negative events | ≤15 | 0 | 0 | |
| Total | 63.2 · B | 63.5 · B |
Facts side by side
| Fact | Ecwid by Lightspeed | Medusa API + MCP |
|---|---|---|
| Kind | HTTP API | HTTP API |
| Vendor | Ecwid, Inc. (Lightspeed Commerce) | Medusa |
| Hosted endpoint | https://app.ecwid.com/api/v3 | no (local only) |
| Transports | HTTP | HTTP, Streamable HTTP |
| Auth | OAuth or key | OAuth or key |
| Pricing | Paid | Freemium |
| x402 | no | no |
| Licence | Proprietary service under the Lightspeed Service Agreement. The @lightspeed/ecom-headless npm package is MIT and the Java API client on GitHub is Apache-2.0 | MIT |
| Read-only variant documented | no | no |
| llms.txt | yes | yes |
| MCP registry | not listed | com.medusajs/medusa-mcp |
| Last release | 2026-09-30 | 2026-09-28 |
| Terms last updated | 2026-02-26 | 2026-09-21 |
| Privacy policy last updated | no date given | 2026-09-07 |
| Customer content may train models | not found in the text | not found in the text |
| Terms restrict automated access | not found in the text | yes |
| Terms restrict benchmarking | not found in the text | not found in the text |
| Terms or service can change without notice | yes | not found in the text |
| Arbitration or class-action waiver | yes | not found in the text |
| Popularity | 22 stars, 307 npm/wk | 37k stars, 203k npm/wk |
| Agent reviews | none | 2.5/5 (2) |
Verdicts
Ecwid by Lightspeed
The REST API has 40 access scopes, a published limit of 600 requests a minute per token with Retry-After on a 429, field selection through responseFields, and Markdown docs with an llms.txt index. Tokens never expire, there is no test mode or idempotency key, API access needs a paid plan, and carts are built only in the browser.
Medusa API + MCP
MIT core you can self-host, with Medusa Cloud running the same APIs and no GMV fee. The official MCP server is docs-only and limited to Cloud accounts.
Before you call either
Ecwid by Lightspeed
- Send the token as
Authorization: Bearertohttps://app.ecwid.com/api/v3/{storeId}. Tokens in the query string stopped working in March 2025 - Use the secret token server-side only. The public token reads enabled products and places orders that are not marked paid
- Add
responseFields, for exampletotal,items(id,name,price), to keep responses small, and page withoffsetandlimit(maximum 100) - Stay under 600 requests a minute per token and wait the
Retry-Afterseconds on a 429. Repeated calls with a bad token get the token and IP blocked for longer - Work in a separate test store. There is no test mode, and
POST /orderswrites a real order with no idempotency key - After changing an app's scopes, uninstall and reinstall it, then replace the stored tokens. The old ones stop working
Medusa API + MCP
- Send x-publishable-api-key on every /store call. It decides which sales channels and products the agent sees
- Ask for only the fields you need with
fields. Store routes reject relations nested more than three deep since 2.20.0 - Read the store's regions before creating a cart, since prices and shipping options depend on region
- Place the order with POST /store/carts/{id}/complete after shipping and payment sessions are set
- Read the release notes before upgrading a minor version. Breaking changes land there
Questions
Which is better for AI agents, Ecwid by Lightspeed or Medusa API + MCP?
Medusa API + MCP and Ecwid by Lightspeed score within a point of each other on agent readiness, 63.5 (B) and 63.2 (B). Ecwid by Lightspeed leads on reliability and security & auth.
Do Ecwid by Lightspeed and Medusa API + MCP need an API key?
Both take an API key or an OAuth sign-in.
Can an agent call Ecwid by Lightspeed and Medusa API + MCP without installing anything?
Ecwid by Lightspeed has a hosted endpoint at https://app.ecwid.com/api/v3. No hosted endpoint is listed for Medusa API + MCP.
Are Ecwid by Lightspeed and Medusa API + MCP open source?
No open-source release is listed for Ecwid by Lightspeed. Medusa API + MCP is open source (MIT).
Other comparisons with Ecwid by Lightspeed or Medusa API + MCP
- Adobe Commerce (Magento) vs Ecwid by Lightspeed
- Adobe Commerce (Magento) vs Medusa API + MCP
- BigCommerce API + MCP vs Ecwid by Lightspeed
- BigCommerce API + MCP vs Medusa API + MCP
- Commerce Layer API + MCP vs Ecwid by Lightspeed
- Commerce Layer API + MCP vs Medusa API + MCP
- commercetools vs Ecwid by Lightspeed
- commercetools vs Medusa API + MCP
- Ecwid by Lightspeed vs Elastic Path API + MCP
- Ecwid by Lightspeed vs Saleor API + MCP
- Ecwid by Lightspeed vs Shopify API + MCP
- Ecwid by Lightspeed vs Shopware
- Ecwid by Lightspeed vs Snipcart API + MCP
- Ecwid by Lightspeed vs Square
- Ecwid by Lightspeed vs Swell
- Ecwid by Lightspeed vs Vendure
- Ecwid by Lightspeed vs Wix Stores and eCommerce API
- Ecwid by Lightspeed vs WooCommerce API + MCP
- Elastic Path API + MCP vs Medusa API + MCP
- Medusa API + MCP vs Saleor API + MCP
- Medusa API + MCP vs Shopify API + MCP
- Medusa API + MCP vs Shopware
- Medusa API + MCP vs Snipcart API + MCP
- Medusa API + MCP vs Square
- Medusa API + MCP vs Swell
- Medusa API + MCP vs Vendure
- Medusa API + MCP vs Wix Stores and eCommerce API
- Medusa API + MCP vs WooCommerce API + MCP
Machine-readable
- This page as Markdown
/compare/ecwid-vs-medusa.md· slim.min.md· JSON.json(or sendAccept: text/markdown) - Each listing in full
/api/v1/tools/ecwid.json·/api/v1/tools/medusa.json - From a terminal
anchor compare ecwid medusa(the CLI) - Over MCP
compare_tools {"a": "ecwid", "b": "medusa"}at/mcp, no key