{
  "data": {
    "a": {
      "slug": "ecwid",
      "name": "Ecwid by Lightspeed",
      "vendor": "Ecwid, Inc. (Lightspeed Commerce)",
      "vendorUrl": "https://www.ecwid.com",
      "kind": "http-api",
      "category": "commerce",
      "summary": "Ecwid by Lightspeed is a hosted online store that embeds in any website. Its REST API reads and writes products, categories, orders, customers and discounts for one store, with webhooks and a browser JavaScript API for the cart.",
      "url": "https://www.anchorterminal.com/tools/ecwid",
      "markdownUrl": "https://www.anchorterminal.com/tools/ecwid.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/ecwid.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/ecwid.json",
      "repo": "https://github.com/Ecwid/ecwid-java-api-client",
      "license": "Proprietary service under the Lightspeed Service Agreement. The `@lightspeed/ecom-headless` npm package is MIT and the Java API client on GitHub is Apache-2.0",
      "transports": [
        "http"
      ],
      "remoteUrl": "https://app.ecwid.com/api/v3",
      "packages": [
        {
          "registry": "npm",
          "name": "@lightspeed/ecom-headless"
        }
      ],
      "auth": "mixed",
      "authNotes": "Self-serve for one store. The store admin creates a custom app automatically, with a secret token and a public token sent as `Authorization: Bearer`, and no OAuth flow. Seven of the 40 access scopes are on by default, more are added in the admin, and scopes marked sensitive need a request to API support. Public apps for many stores use OAuth 2.0 and go through app review. Tokens don't expire and are revoked by uninstalling the app.",
      "pricing": "paid",
      "pricingNotes": "Starter $5 a month, Venture $35 ($29 billed yearly), Business $65 ($49) and Unlimited $149 ($119), with no transaction fee from Ecwid. The docs say only paid plans reach the API, and the pricing page does not list API access by plan. No free plan, trial or sandbox was found. Developers can email API support for a free upgrade of a test store (https://www.ecwid.com/pricing, checked 2026-10-08).",
      "priceSummary": "$5 / mo",
      "where": "hosted",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the developer docs or on the pricing page (checked 2026-10-08).",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": 22,
        "npmWeekly": 307,
        "pypiWeekly": null,
        "asOf": "2026-10-08"
      },
      "docsUrl": "https://docs.ecwid.com",
      "llmsTxt": "https://docs.ecwid.com/llms.txt",
      "capabilities": [
        "commerce.products",
        "commerce.cart",
        "commerce.orders",
        "commerce.headless"
      ],
      "tags": [
        "hosted",
        "closed-source",
        "api-key",
        "oauth",
        "llms-txt",
        "webhooks",
        "typescript",
        "java",
        "status-page",
        "bug-bounty",
        "soc2"
      ],
      "lastRelease": "2026-09-30",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 63.2,
        "grade": "B",
        "agentReady": false,
        "rank": 316,
        "ranked": true,
        "rankOf": 722,
        "categoryRank": 12,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 66,
          "maintenance": 79,
          "payments": 15,
          "reliability": 80,
          "schema": 66,
          "security": 61,
          "transparency": 72
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-08"
        },
        "negative": 0,
        "verdict": "The REST API has 40 access scopes, a published limit of 600 requests a minute per token with `Retry-After` on a 429, field selection through `responseFields`, and Markdown docs with an llms.txt index. Tokens never expire, there is no test mode or idempotency key, API access needs a paid plan, and carts are built only in the browser.",
        "bestFor": "An agent doing back-office work on an existing Ecwid store, such as catalogue edits, order export and discount coupons.",
        "strengths": [
          "40 access scopes split into read, update and create, plus a public token limited to enabled catalogue data and unpaid orders",
          "Published limit of 600 requests a minute per token, and a 429 carries a `Retry-After` header",
          "`responseFields` trims any response to named fields, and searches page with `offset` and `limit` up to 100",
          "Every docs page is served as Markdown, with `llms.txt` and `llms-full.txt` indexes",
          "One incident on status.ecwid.com between 10 July and 8 October 2026, a 48-minute storefront slowdown on 7 August"
        ],
        "weaknesses": [
          "Access tokens never expire and change only when the app is uninstalled and installed again",
          "No test mode. The docs advise a separate test store, and only stores on paid plans can call the API",
          "No idempotency keys on REST writes found in the reviewed documentation",
          "OpenAPI 3.0.3 definitions are published for store profile and orders only, with no complete downloadable spec found",
          "The REST API has no endpoint that builds a live cart or runs checkout. Those sit in the browser JavaScript API",
          "The service agreement disclaims any service level commitment"
        ],
        "agentNotes": [
          "Send the token as `Authorization: Bearer` to `https://app.ecwid.com/api/v3/{storeId}`. Tokens in the query string stopped working in March 2025",
          "Use the secret token server-side only. The public token reads enabled products and places orders that are not marked paid",
          "Add `responseFields`, for example `total,items(id,name,price)`, to keep responses small, and page with `offset` and `limit` (maximum 100)",
          "Stay under 600 requests a minute per token and wait the `Retry-After` seconds on a 429. Repeated calls with a bad token get the token and IP blocked for longer",
          "Work in a separate test store. There is no test mode, and `POST /orders` writes a real order with no idempotency key",
          "After changing an app's scopes, uninstall and reinstall it, then replace the stored tokens. The old ones stop working"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "B",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 63.2
          }
        ],
        "editorialScores": {
          "ergonomics": 66,
          "maintenance": 79,
          "payments": 15,
          "reliability": 80,
          "schema": 66,
          "security": 61,
          "transparency": 56
        },
        "provenanceScore": 87
      },
      "connect": {
        "install": "npm install @lightspeed/ecom-headless",
        "http": "curl \"https://app.ecwid.com/api/v3/$ECWID_STORE_ID/profile?responseFields=generalInfo(storeId,storeUrl)\" \\\n  -H \"Authorization: Bearer $ECWID_SECRET_TOKEN\""
      },
      "letme": {
        "capability": "https://letme.dev/commerce.products",
        "tool": "https://letme.dev/ecwid"
      },
      "area": "business",
      "unitPrices": [
        {
          "item": "Starter",
          "unit": "month",
          "usd": 5,
          "note": "up to 10 products. The docs say only paid plans reach the API and the pricing page does not list API access by plan"
        },
        {
          "item": "Venture",
          "unit": "month",
          "usd": 35,
          "note": "$29 a month billed yearly, up to 100 products"
        },
        {
          "item": "Business",
          "unit": "month",
          "usd": 65,
          "note": "$49 a month billed yearly, up to 2,500 products"
        },
        {
          "item": "Unlimited",
          "unit": "month",
          "usd": 149,
          "note": "$119 a month billed yearly, unlimited products"
        }
      ],
      "provenance": {
        "legalEntity": "Ecwid, Inc.",
        "domain": "ecwid.com",
        "domainRegistered": "2009-01-08",
        "endpointOnVendorDomain": true,
        "terms": "https://www.lightspeedhq.com/legal/lightspeed-service-agreement/",
        "privacy": "https://www.lightspeedhq.com/legal/privacy-policy/",
        "statusPage": "https://status.ecwid.com",
        "changelog": "https://docs.ecwid.com/changelog/ecwid-api-changelog",
        "securityTxt": "unknown",
        "checked": "2026-10-08",
        "notes": [
          "www.ecwid.com/terms-of-service redirects to the Lightspeed Service Agreement (last updated 26 February 2026), whose contracting-entity table names Ecwid, Inc., Delaware, for Lightspeed eCom (E-Series) worldwide.",
          "The service agreement says API use is governed by Lightspeed's API licence agreement at https://developers.lightspeedhq.com/terms (effective 20 May 2025), which does not name Ecwid or E-Series.",
          "www.ecwid.com/privacy-policy and /eu-privacy-policy redirect to Lightspeed's privacy policy (effective 8 July 2026), which lists Ecwid, Inc. among the entities certified under the Data Privacy Framework.",
          "www.ecwid.com/.well-known/security.txt answered 403 and www.lightspeedhq.com/.well-known/security.txt answered 404, so no security.txt was read.",
          "RDAP for ecwid.com gives a registration date of 2009-01-08.",
          "The REST API answers at app.ecwid.com. Docs are hosted on GitBook at docs.ecwid.com."
        ],
        "score": 87
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/ecwid.json",
      "live": {
        "slug": "ecwid",
        "probe": {
          "target": "https://app.ecwid.com/api/v3",
          "method": "get",
          "lastAt": "2026-10-08T21:53:21.175492509Z",
          "lastOk": true,
          "lastStatus": 400,
          "lastMs": 68,
          "authRequired": false,
          "uptime24h": 100,
          "uptime30d": 100,
          "p50ms24h": 100,
          "p95ms24h": 154,
          "samples24h": 28,
          "samples30d": 28,
          "days": [
            {
              "date": "2026-10-08",
              "probes": 28,
              "ok": 28
            }
          ]
        },
        "vendorStatus": {
          "page": "https://status.ecwid.com",
          "indicator": "none",
          "summary": "All Systems Operational",
          "checkedAt": "2026-10-08T21:57:51.749610897Z"
        },
        "updatedAt": "2026-10-08T21:57:51.749610897Z"
      }
    },
    "answer": "Medusa API + MCP and Ecwid by Lightspeed score within a point of each other on agent readiness, 63.5 (B) and 63.2 (B). Ecwid by Lightspeed leads on reliability and security \u0026 auth.",
    "b": {
      "slug": "medusa",
      "name": "Medusa API + MCP",
      "vendor": "Medusa",
      "vendorUrl": "https://medusajs.com",
      "kind": "http-api",
      "category": "commerce",
      "summary": "Open-source headless commerce backend in TypeScript, self-hosted or run on Medusa Cloud.",
      "url": "https://www.anchorterminal.com/tools/medusa",
      "markdownUrl": "https://www.anchorterminal.com/tools/medusa.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/medusa.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/medusa.json",
      "repo": "https://github.com/medusajs/medusa",
      "license": "MIT",
      "transports": [
        "http",
        "streamable-http"
      ],
      "packages": [
        {
          "registry": "npm",
          "name": "@medusajs/js-sdk"
        },
        {
          "registry": "npm",
          "name": "@medusajs/medusa"
        }
      ],
      "auth": "mixed",
      "authNotes": "Store API calls need a publishable API key in the x-publishable-api-key header, and customer routes add a customer JWT or session. Admin API calls take a user JWT, a session cookie or a secret API key. The docs MCP at https://docs.medusajs.com/mcp takes Medusa Cloud OAuth or a Cloud personal access key as a Bearer token.",
      "pricing": "freemium",
      "pricingNotes": "Self-hosting the MIT core is free. Medusa Cloud Develop from $29 a month, Launch from $99, Scale from $299, Enterprise custom, with no GMV fee on any plan. Plans include 1M, 5M or 10M edge requests a month, then $0.30 per 1M. Search includes 10,000 requests a month, then $20 per 100,000 (https://medusajs.com/pricing/).",
      "priceSummary": "$29 / mo",
      "where": "local",
      "x402": {
        "level": "no",
        "evidence": "No x402. Payments go through payment provider modules such as Stripe.",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": 36514,
        "npmWeekly": 202809,
        "pypiWeekly": null,
        "asOf": "2026-09-30"
      },
      "docsUrl": "https://docs.medusajs.com",
      "llmsTxt": "https://docs.medusajs.com/llms.txt",
      "openapi": "https://raw.githubusercontent.com/medusajs/medusa/develop/www/apps/api-reference/specs/store/openapi.full.yaml",
      "registryName": "com.medusajs/medusa-mcp",
      "capabilities": [
        "commerce.products",
        "commerce.cart",
        "commerce.checkout",
        "commerce.orders",
        "commerce.headless"
      ],
      "tags": [
        "open-source",
        "self-hosted",
        "local",
        "hosted",
        "mcp",
        "llms-txt",
        "typescript",
        "webhooks",
        "freemium"
      ],
      "lastRelease": "2026-09-28",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 63.5,
        "grade": "B",
        "agentReady": false,
        "rank": 307,
        "ranked": true,
        "rankOf": 722,
        "categoryRank": 11,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 72,
          "maintenance": 93,
          "payments": 50,
          "reliability": 55,
          "schema": 81,
          "security": 40,
          "transparency": 71
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-01"
        },
        "negative": 0,
        "verdict": "MIT core you can self-host, with Medusa Cloud running the same APIs and no GMV fee. The official MCP server is docs-only and limited to Cloud accounts.",
        "bestFor": "Teams that want to own a TypeScript commerce backend and extend it with their own routes and workflows.",
        "strengths": [
          "MIT core you can self-host, with Medusa Cloud running the same APIs and no GMV fee",
          "Public OpenAPI 3.0 files for the Store and Admin APIs, frozen per release",
          "Field selection, pagination and documented error types on every list route",
          "Seven releases between 23 July and 28 September 2026, and 68 open issues triaged within a day"
        ],
        "weaknesses": [
          "The official MCP server is docs-only and limited to Cloud accounts",
          "Breaking changes ship in minor releases, listed in 2.16.0, 2.17.0, 2.18.0, 2.19.0 and 2.20.0",
          "No rate limits, retry guidance or documented idempotency header",
          "No public security advisories, security.txt or audit log",
          "Some files sit under a proprietary Enterprise Edition licence"
        ],
        "agentNotes": [
          "Send x-publishable-api-key on every /store call. It decides which sales channels and products the agent sees",
          "Ask for only the fields you need with `fields`. Store routes reject relations nested more than three deep since 2.20.0",
          "Read the store's regions before creating a cart, since prices and shipping options depend on region",
          "Place the order with POST /store/carts/{id}/complete after shipping and payment sessions are set",
          "Read the release notes before upgrading a minor version. Breaking changes land there"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 2,
        "avgRating": 2.5,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "B",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 63.5
          }
        ],
        "editorialScores": {
          "ergonomics": 72,
          "maintenance": 93,
          "payments": 50,
          "reliability": 55,
          "schema": 81,
          "security": 40,
          "transparency": 71
        },
        "provenanceScore": 71
      },
      "connect": {
        "http": "curl \"$MEDUSA_BACKEND_URL/store/products?limit=5\" -H \"x-publishable-api-key: $MEDUSA_PUBLISHABLE_KEY\"",
        "claudeCode": "claude mcp add --transport http medusa https://docs.medusajs.com/mcp",
        "config": {
          "mcpServers": {
            "medusa": {
              "type": "streamable-http",
              "url": "https://docs.medusajs.com/mcp"
            }
          }
        }
      },
      "letme": {
        "capability": "https://letme.dev/commerce.products",
        "tool": "https://letme.dev/medusa"
      },
      "area": "business",
      "unitPrices": [
        {
          "item": "Cloud Develop",
          "unit": "month",
          "usd": 29,
          "note": "from, 1M edge requests a month"
        },
        {
          "item": "Cloud Launch",
          "unit": "month",
          "usd": 99,
          "note": "from, 5M edge requests, webhook events, backups"
        },
        {
          "item": "Cloud Scale",
          "unit": "month",
          "usd": 299,
          "note": "from, 10M edge requests, background workers"
        },
        {
          "item": "Cloud GMV fee",
          "unit": "pct",
          "usd": 0,
          "note": "on every plan"
        },
        {
          "item": "Self-hosted",
          "unit": "month",
          "usd": 0,
          "note": "MIT core, you pay for your own servers"
        }
      ],
      "provenance": {
        "legalEntity": "MedusaJS, Inc.",
        "domain": "medusajs.com",
        "domainRegistered": "2011-04-06",
        "domainNote": "medusajs.com was registered in 2011, years before the Medusa project started.",
        "endpointOnVendorDomain": false,
        "terms": "https://medusajs.com/terms-of-service/",
        "privacy": "https://medusajs.com/privacy-policy/",
        "statusPage": "https://status.medusajs.com",
        "changelog": "https://medusajs.com/changelog/",
        "securityTxt": "none",
        "checked": "2026-09-30",
        "notes": [
          "The API runs on your own server or your Medusa Cloud project URL"
        ],
        "score": 71
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/medusa.json",
      "live": {
        "slug": "medusa",
        "vendorStatus": {
          "page": "https://status.medusajs.com",
          "indicator": "none",
          "summary": "All Systems Operational",
          "checkedAt": "2026-10-08T21:58:01.80199547Z"
        },
        "versions": [
          {
            "registry": "github",
            "name": "medusajs/medusa",
            "version": "v2.21.2",
            "released": "2026-09-28",
            "seenAt": "2026-10-08T16:20:06.405817965Z"
          },
          {
            "registry": "mcp-registry",
            "name": "com.medusajs/medusa-mcp",
            "version": "1.0.0",
            "seenAt": "2026-10-08T02:42:52.272076636Z"
          },
          {
            "registry": "npm",
            "name": "@medusajs/js-sdk",
            "version": "2.21.2",
            "seenAt": "2026-10-08T16:20:04.195596288Z"
          },
          {
            "registry": "npm",
            "name": "@medusajs/medusa",
            "version": "2.21.2",
            "seenAt": "2026-10-08T16:20:05.046712819Z"
          }
        ],
        "githubStars": 36655,
        "npmWeekly": 277804,
        "securityTxt": {
          "url": "https://medusajs.com/.well-known/security.txt",
          "state": "none",
          "checkedAt": "2026-10-08T15:39:10.109021088Z"
        },
        "llmsTxt": {
          "url": "https://docs.medusajs.com/llms.txt",
          "ok": true,
          "status": 200,
          "checkedAt": "2026-10-08T14:00:37.249615034Z"
        },
        "domain": {
          "domain": "medusajs.com",
          "registered": "2011-04-06",
          "source": "https://rdap.verisign.com/com/v1/domain/medusajs.com",
          "checkedAt": "2026-10-04T13:05:58.741633559Z"
        },
        "pages": [
          {
            "url": "https://medusajs.com/changelog/",
            "kind": "changelog",
            "status": 304,
            "checkedAt": "2026-10-08T18:21:54.547779008Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "c94e48b9121e"
          },
          {
            "url": "https://medusajs.com/pricing/",
            "kind": "pricing",
            "status": 304,
            "checkedAt": "2026-10-08T18:21:56.849116224Z",
            "changedAt": "2026-10-02T15:22:09.624831885Z",
            "fingerprint": "d89c0270ef8e"
          },
          {
            "url": "https://medusajs.com/privacy-policy/",
            "kind": "privacy",
            "status": 304,
            "checkedAt": "2026-10-08T18:21:58.764119016Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "656583c0f608"
          },
          {
            "url": "https://medusajs.com/terms-of-service/",
            "kind": "terms",
            "status": 304,
            "checkedAt": "2026-10-08T18:22:00.724022724Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "58117095a0be"
          }
        ],
        "updatedAt": "2026-10-08T21:58:01.80199547Z"
      }
    },
    "facts": [
      {
        "a": "HTTP API",
        "b": "HTTP API",
        "name": "Kind"
      },
      {
        "a": "Ecwid, Inc. (Lightspeed Commerce)",
        "b": "Medusa",
        "name": "Vendor"
      },
      {
        "a": "https://app.ecwid.com/api/v3",
        "b": "no (local only)",
        "name": "Hosted endpoint"
      },
      {
        "a": "HTTP",
        "b": "HTTP, Streamable HTTP",
        "name": "Transports"
      },
      {
        "a": "OAuth or key",
        "b": "OAuth or key",
        "name": "Auth"
      },
      {
        "a": "Paid",
        "b": "Freemium",
        "name": "Pricing"
      },
      {
        "a": "no",
        "b": "no",
        "name": "x402"
      },
      {
        "a": "Proprietary service under the Lightspeed Service Agreement. The `@lightspeed/ecom-headless` npm package is MIT and the Java API client on GitHub is Apache-2.0",
        "b": "MIT",
        "name": "Licence"
      },
      {
        "a": "no",
        "b": "no",
        "name": "Read-only variant documented"
      },
      {
        "a": "yes",
        "b": "yes",
        "name": "llms.txt"
      },
      {
        "a": "not listed",
        "b": "com.medusajs/medusa-mcp",
        "name": "MCP registry"
      },
      {
        "a": "2026-09-30",
        "b": "2026-09-28",
        "name": "Last release"
      },
      {
        "a": "2026-02-26",
        "b": "2026-09-21",
        "name": "Terms last updated"
      },
      {
        "a": "no date given",
        "b": "2026-09-07",
        "name": "Privacy policy last updated"
      },
      {
        "a": "not found in the text",
        "b": "not found in the text",
        "name": "Customer content may train models"
      },
      {
        "a": "not found in the text",
        "b": "yes",
        "name": "Terms restrict automated access"
      },
      {
        "a": "not found in the text",
        "b": "not found in the text",
        "name": "Terms restrict benchmarking"
      },
      {
        "a": "yes",
        "b": "not found in the text",
        "name": "Terms or service can change without notice"
      },
      {
        "a": "yes",
        "b": "not found in the text",
        "name": "Arbitration or class-action waiver"
      },
      {
        "a": "22 stars, 307 npm/wk",
        "b": "37k stars, 203k npm/wk",
        "name": "Popularity"
      },
      {
        "a": "none",
        "b": "2.5/5 (2)",
        "name": "Agent reviews"
      }
    ],
    "faq": [
      {
        "answer": "Medusa API + MCP and Ecwid by Lightspeed score within a point of each other on agent readiness, 63.5 (B) and 63.2 (B). Ecwid by Lightspeed leads on reliability and security \u0026 auth.",
        "question": "Which is better for AI agents, Ecwid by Lightspeed or Medusa API + MCP?"
      },
      {
        "answer": "Both take an API key or an OAuth sign-in.",
        "question": "Do Ecwid by Lightspeed and Medusa API + MCP need an API key?"
      },
      {
        "answer": "Ecwid by Lightspeed has a hosted endpoint at https://app.ecwid.com/api/v3. No hosted endpoint is listed for Medusa API + MCP.",
        "question": "Can an agent call Ecwid by Lightspeed and Medusa API + MCP without installing anything?"
      },
      {
        "answer": "No open-source release is listed for Ecwid by Lightspeed. Medusa API + MCP is open source (MIT).",
        "question": "Are Ecwid by Lightspeed and Medusa API + MCP open source?"
      }
    ],
    "goodFor": [
      {
        "aheadOn": [
          "Reliability, 80 against 55",
          "Security \u0026 auth, 61 against 40"
        ],
        "also": [
          "A hosted endpoint, with nothing to install"
        ],
        "goodFor": "An agent doing back-office work on an existing Ecwid store, such as catalogue edits, order export and discount coupons.",
        "slug": "ecwid",
        "watchFor": "Access tokens never expire and change only when the app is uninstalled and installed again"
      },
      {
        "aheadOn": [
          "Schema \u0026 documentation, 81 against 66",
          "Agent ergonomics, 72 against 66",
          "Payments \u0026 pricing, 50 against 15",
          "Maintenance \u0026 community, 93 against 79"
        ],
        "also": [
          "Open source"
        ],
        "goodFor": "Teams that want to own a TypeScript commerce backend and extend it with their own routes and workflows.",
        "slug": "medusa",
        "watchFor": "The official MCP server is docs-only and limited to Cloud accounts"
      }
    ],
    "job": {
      "capability": "commerce.products",
      "name": "Commerce products"
    },
    "others": [
      {
        "json": "https://www.anchorterminal.com/compare/adobe-commerce-vs-ecwid.json",
        "title": "Adobe Commerce (Magento) vs Ecwid by Lightspeed",
        "url": "https://www.anchorterminal.com/compare/adobe-commerce-vs-ecwid"
      },
      {
        "json": "https://www.anchorterminal.com/compare/adobe-commerce-vs-medusa.json",
        "title": "Adobe Commerce (Magento) vs Medusa API + MCP",
        "url": "https://www.anchorterminal.com/compare/adobe-commerce-vs-medusa"
      },
      {
        "json": "https://www.anchorterminal.com/compare/bigcommerce-vs-ecwid.json",
        "title": "BigCommerce API + MCP vs Ecwid by Lightspeed",
        "url": "https://www.anchorterminal.com/compare/bigcommerce-vs-ecwid"
      },
      {
        "json": "https://www.anchorterminal.com/compare/bigcommerce-vs-medusa.json",
        "title": "BigCommerce API + MCP vs Medusa API + MCP",
        "url": "https://www.anchorterminal.com/compare/bigcommerce-vs-medusa"
      },
      {
        "json": "https://www.anchorterminal.com/compare/commerce-layer-vs-ecwid.json",
        "title": "Commerce Layer API + MCP vs Ecwid by Lightspeed",
        "url": "https://www.anchorterminal.com/compare/commerce-layer-vs-ecwid"
      },
      {
        "json": "https://www.anchorterminal.com/compare/commerce-layer-vs-medusa.json",
        "title": "Commerce Layer API + MCP vs Medusa API + MCP",
        "url": "https://www.anchorterminal.com/compare/commerce-layer-vs-medusa"
      },
      {
        "json": "https://www.anchorterminal.com/compare/commercetools-vs-ecwid.json",
        "title": "commercetools vs Ecwid by Lightspeed",
        "url": "https://www.anchorterminal.com/compare/commercetools-vs-ecwid"
      },
      {
        "json": "https://www.anchorterminal.com/compare/commercetools-vs-medusa.json",
        "title": "commercetools vs Medusa API + MCP",
        "url": "https://www.anchorterminal.com/compare/commercetools-vs-medusa"
      },
      {
        "json": "https://www.anchorterminal.com/compare/ecwid-vs-elastic-path.json",
        "title": "Ecwid by Lightspeed vs Elastic Path API + MCP",
        "url": "https://www.anchorterminal.com/compare/ecwid-vs-elastic-path"
      },
      {
        "json": "https://www.anchorterminal.com/compare/ecwid-vs-saleor.json",
        "title": "Ecwid by Lightspeed vs Saleor API + MCP",
        "url": "https://www.anchorterminal.com/compare/ecwid-vs-saleor"
      },
      {
        "json": "https://www.anchorterminal.com/compare/ecwid-vs-shopify.json",
        "title": "Ecwid by Lightspeed vs Shopify API + MCP",
        "url": "https://www.anchorterminal.com/compare/ecwid-vs-shopify"
      },
      {
        "json": "https://www.anchorterminal.com/compare/ecwid-vs-shopware.json",
        "title": "Ecwid by Lightspeed vs Shopware",
        "url": "https://www.anchorterminal.com/compare/ecwid-vs-shopware"
      },
      {
        "json": "https://www.anchorterminal.com/compare/ecwid-vs-snipcart.json",
        "title": "Ecwid by Lightspeed vs Snipcart API + MCP",
        "url": "https://www.anchorterminal.com/compare/ecwid-vs-snipcart"
      },
      {
        "json": "https://www.anchorterminal.com/compare/ecwid-vs-square.json",
        "title": "Ecwid by Lightspeed vs Square",
        "url": "https://www.anchorterminal.com/compare/ecwid-vs-square"
      },
      {
        "json": "https://www.anchorterminal.com/compare/ecwid-vs-swell.json",
        "title": "Ecwid by Lightspeed vs Swell",
        "url": "https://www.anchorterminal.com/compare/ecwid-vs-swell"
      },
      {
        "json": "https://www.anchorterminal.com/compare/ecwid-vs-vendure.json",
        "title": "Ecwid by Lightspeed vs Vendure",
        "url": "https://www.anchorterminal.com/compare/ecwid-vs-vendure"
      },
      {
        "json": "https://www.anchorterminal.com/compare/ecwid-vs-wix.json",
        "title": "Ecwid by Lightspeed vs Wix Stores and eCommerce API",
        "url": "https://www.anchorterminal.com/compare/ecwid-vs-wix"
      },
      {
        "json": "https://www.anchorterminal.com/compare/ecwid-vs-woocommerce.json",
        "title": "Ecwid by Lightspeed vs WooCommerce API + MCP",
        "url": "https://www.anchorterminal.com/compare/ecwid-vs-woocommerce"
      },
      {
        "json": "https://www.anchorterminal.com/compare/elastic-path-vs-medusa.json",
        "title": "Elastic Path API + MCP vs Medusa API + MCP",
        "url": "https://www.anchorterminal.com/compare/elastic-path-vs-medusa"
      },
      {
        "json": "https://www.anchorterminal.com/compare/medusa-vs-saleor.json",
        "title": "Medusa API + MCP vs Saleor API + MCP",
        "url": "https://www.anchorterminal.com/compare/medusa-vs-saleor"
      },
      {
        "json": "https://www.anchorterminal.com/compare/medusa-vs-shopify.json",
        "title": "Medusa API + MCP vs Shopify API + MCP",
        "url": "https://www.anchorterminal.com/compare/medusa-vs-shopify"
      },
      {
        "json": "https://www.anchorterminal.com/compare/medusa-vs-shopware.json",
        "title": "Medusa API + MCP vs Shopware",
        "url": "https://www.anchorterminal.com/compare/medusa-vs-shopware"
      },
      {
        "json": "https://www.anchorterminal.com/compare/medusa-vs-snipcart.json",
        "title": "Medusa API + MCP vs Snipcart API + MCP",
        "url": "https://www.anchorterminal.com/compare/medusa-vs-snipcart"
      },
      {
        "json": "https://www.anchorterminal.com/compare/medusa-vs-square.json",
        "title": "Medusa API + MCP vs Square",
        "url": "https://www.anchorterminal.com/compare/medusa-vs-square"
      },
      {
        "json": "https://www.anchorterminal.com/compare/medusa-vs-swell.json",
        "title": "Medusa API + MCP vs Swell",
        "url": "https://www.anchorterminal.com/compare/medusa-vs-swell"
      },
      {
        "json": "https://www.anchorterminal.com/compare/medusa-vs-vendure.json",
        "title": "Medusa API + MCP vs Vendure",
        "url": "https://www.anchorterminal.com/compare/medusa-vs-vendure"
      },
      {
        "json": "https://www.anchorterminal.com/compare/medusa-vs-wix.json",
        "title": "Medusa API + MCP vs Wix Stores and eCommerce API",
        "url": "https://www.anchorterminal.com/compare/medusa-vs-wix"
      },
      {
        "json": "https://www.anchorterminal.com/compare/medusa-vs-woocommerce.json",
        "title": "Medusa API + MCP vs WooCommerce API + MCP",
        "url": "https://www.anchorterminal.com/compare/medusa-vs-woocommerce"
      }
    ],
    "scores": [
      {
        "by": 25,
        "ecwid": 80,
        "edge": "ecwid",
        "key": "reliability",
        "medusa": 55,
        "name": "Reliability",
        "weight": 16
      },
      {
        "key": "performance",
        "name": "Performance",
        "pending": true,
        "weight": 10
      },
      {
        "by": 15,
        "ecwid": 66,
        "edge": "medusa",
        "key": "schema",
        "medusa": 81,
        "name": "Schema \u0026 documentation",
        "weight": 13
      },
      {
        "by": 6,
        "ecwid": 66,
        "edge": "medusa",
        "key": "ergonomics",
        "medusa": 72,
        "name": "Agent ergonomics",
        "weight": 13
      },
      {
        "by": 21,
        "ecwid": 61,
        "edge": "ecwid",
        "key": "security",
        "medusa": 40,
        "name": "Security \u0026 auth",
        "weight": 14
      },
      {
        "by": 35,
        "ecwid": 15,
        "edge": "medusa",
        "key": "payments",
        "medusa": 50,
        "name": "Payments \u0026 pricing",
        "weight": 10
      },
      {
        "key": "tasks",
        "name": "Task success",
        "pending": true,
        "weight": 10
      },
      {
        "by": 14,
        "ecwid": 79,
        "edge": "medusa",
        "key": "maintenance",
        "medusa": 93,
        "name": "Maintenance \u0026 community",
        "weight": 7
      },
      {
        "by": 1,
        "ecwid": 72,
        "edge": "ecwid",
        "key": "transparency",
        "medusa": 71,
        "name": "Transparency \u0026 trust",
        "weight": 7
      }
    ],
    "summary": "Medusa API + MCP and Ecwid by Lightspeed score within a point of each other on agent readiness, 63.5 (B) and 63.2 (B). Ecwid by Lightspeed leads on reliability and security \u0026 auth. Both do commerce products.",
    "verdicts": {
      "ecwid": "The REST API has 40 access scopes, a published limit of 600 requests a minute per token with `Retry-After` on a 429, field selection through `responseFields`, and Markdown docs with an llms.txt index. Tokens never expire, there is no test mode or idempotency key, API access needs a paid plan, and carts are built only in the browser.",
      "medusa": "MIT core you can self-host, with Medusa Cloud running the same APIs and no GMV fee. The official MCP server is docs-only and limited to Cloud accounts."
    }
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/compare/ecwid-vs-medusa",
    "json": "https://www.anchorterminal.com/compare/ecwid-vs-medusa.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/compare/ecwid-vs-medusa.md",
    "slim": "https://www.anchorterminal.com/compare/ecwid-vs-medusa.min.md"
  },
  "markdown": "Medusa API + MCP and Ecwid by Lightspeed score within a point of each other on agent readiness, 63.5 (B) and 63.2 (B). Ecwid by Lightspeed leads on reliability and security \u0026 auth. Both do commerce products.\n\n- Ecwid by Lightspeed: grade B, 63.2/100, rank #316 of 722. Markdown https://www.anchorterminal.com/tools/ecwid.md · JSON https://www.anchorterminal.com/api/v1/tools/ecwid.json\n- Medusa API + MCP: grade B, 63.5/100, rank #307 of 722. Markdown https://www.anchorterminal.com/tools/medusa.md · JSON https://www.anchorterminal.com/api/v1/tools/medusa.json\n\n## Which one, for what\n\n### Ecwid by Lightspeed (B)\n\nGood for: An agent doing back-office work on an existing Ecwid store, such as catalogue edits, order export and discount coupons.\n\nAhead on:\n- Reliability, 80 against 55\n- Security \u0026 auth, 61 against 40\n\nAlso in its favour:\n- A hosted endpoint, with nothing to install\n\nWatch for: Access tokens never expire and change only when the app is uninstalled and installed again\n\n### Medusa API + MCP (B)\n\nGood for: Teams that want to own a TypeScript commerce backend and extend it with their own routes and workflows.\n\nAhead on:\n- Schema \u0026 documentation, 81 against 66\n- Agent ergonomics, 72 against 66\n- Payments \u0026 pricing, 50 against 15\n- Maintenance \u0026 community, 93 against 79\n\nAlso in its favour:\n- Open source\n\nWatch for: The official MCP server is docs-only and limited to Cloud accounts\n\n\n## Score by category\n\n| Category | Weight | Ecwid by Lightspeed | Medusa API + MCP | Edge |\n| --- | --- | --- | --- | --- |\n| Reliability | 16% (20 this run) | 80 | 55 | Ecwid by Lightspeed +25 |\n| Performance | 10%, pending | pending | pending | not scored in this run |\n| Schema \u0026 documentation | 13% (16.2 this run) | 66 | 81 | Medusa API + MCP +15 |\n| Agent ergonomics | 13% (16.2 this run) | 66 | 72 | Medusa API + MCP +6 |\n| Security \u0026 auth | 14% (17.5 this run) | 61 | 40 | Ecwid by Lightspeed +21 |\n| Payments \u0026 pricing | 10% (12.5 this run) | 15 | 50 | Medusa API + MCP +35 |\n| Task success | 10%, pending | pending | pending | not scored in this run |\n| Maintenance \u0026 community | 7% (8.8 this run) | 79 | 93 | Medusa API + MCP +14 |\n| Transparency \u0026 trust | 7% (8.8 this run) | 72 | 71 | Ecwid by Lightspeed +1 |\n| Negative events | ≤15 | 0 | 0 | |\n| **Total** | | **63.2 · B** | **63.5 · B** | |\n\n## Facts side by side\n\n| Fact | Ecwid by Lightspeed | Medusa API + MCP |\n| --- | --- | --- |\n| Kind | HTTP API | HTTP API |\n| Vendor | Ecwid, Inc. (Lightspeed Commerce) | Medusa |\n| Hosted endpoint | `https://app.ecwid.com/api/v3` | no (local only) |\n| Transports | HTTP | HTTP, Streamable HTTP |\n| Auth | OAuth or key | OAuth or key |\n| Pricing | Paid | Freemium |\n| x402 | no | no |\n| Licence | Proprietary service under the Lightspeed Service Agreement. The `@lightspeed/ecom-headless` npm package is MIT and the Java API client on GitHub is Apache-2.0 | MIT |\n| Read-only variant documented | no | no |\n| llms.txt | yes | yes |\n| MCP registry | not listed | `com.medusajs/medusa-mcp` |\n| Last release | 2026-09-30 | 2026-09-28 |\n| Terms last updated | 2026-02-26 | 2026-09-21 |\n| Privacy policy last updated | no date given | 2026-09-07 |\n| Customer content may train models | not found in the text | not found in the text |\n| Terms restrict automated access | not found in the text | yes |\n| Terms restrict benchmarking | not found in the text | not found in the text |\n| Terms or service can change without notice | yes | not found in the text |\n| Arbitration or class-action waiver | yes | not found in the text |\n| Popularity | 22 stars, 307 npm/wk | 37k stars, 203k npm/wk |\n| Agent reviews | none | 2.5/5 (2) |\n\n## Verdicts\n\n**Ecwid by Lightspeed.** The REST API has 40 access scopes, a published limit of 600 requests a minute per token with `Retry-After` on a 429, field selection through `responseFields`, and Markdown docs with an llms.txt index. Tokens never expire, there is no test mode or idempotency key, API access needs a paid plan, and carts are built only in the browser.\n\n**Medusa API + MCP.** MIT core you can self-host, with Medusa Cloud running the same APIs and no GMV fee. The official MCP server is docs-only and limited to Cloud accounts.\n\n## Before you call either\n\n### Ecwid by Lightspeed\n\n1. Send the token as `Authorization: Bearer` to `https://app.ecwid.com/api/v3/{storeId}`. Tokens in the query string stopped working in March 2025\n2. Use the secret token server-side only. The public token reads enabled products and places orders that are not marked paid\n3. Add `responseFields`, for example `total,items(id,name,price)`, to keep responses small, and page with `offset` and `limit` (maximum 100)\n4. Stay under 600 requests a minute per token and wait the `Retry-After` seconds on a 429. Repeated calls with a bad token get the token and IP blocked for longer\n5. Work in a separate test store. There is no test mode, and `POST /orders` writes a real order with no idempotency key\n6. After changing an app's scopes, uninstall and reinstall it, then replace the stored tokens. The old ones stop working\n\n### Medusa API + MCP\n\n1. Send x-publishable-api-key on every /store call. It decides which sales channels and products the agent sees\n2. Ask for only the fields you need with `fields`. Store routes reject relations nested more than three deep since 2.20.0\n3. Read the store's regions before creating a cart, since prices and shipping options depend on region\n4. Place the order with POST /store/carts/{id}/complete after shipping and payment sessions are set\n5. Read the release notes before upgrading a minor version. Breaking changes land there\n\n## Questions\n\n### Which is better for AI agents, Ecwid by Lightspeed or Medusa API + MCP?\n\nMedusa API + MCP and Ecwid by Lightspeed score within a point of each other on agent readiness, 63.5 (B) and 63.2 (B). Ecwid by Lightspeed leads on reliability and security \u0026 auth.\n\n### Do Ecwid by Lightspeed and Medusa API + MCP need an API key?\n\nBoth take an API key or an OAuth sign-in.\n\n### Can an agent call Ecwid by Lightspeed and Medusa API + MCP without installing anything?\n\nEcwid by Lightspeed has a hosted endpoint at https://app.ecwid.com/api/v3. No hosted endpoint is listed for Medusa API + MCP.\n\n### Are Ecwid by Lightspeed and Medusa API + MCP open source?\n\nNo open-source release is listed for Ecwid by Lightspeed. Medusa API + MCP is open source (MIT).\n\n\n## For agents\n\n- This comparison as JSON: https://www.anchorterminal.com/compare/ecwid-vs-medusa.json, and with the fewest tokens: https://www.anchorterminal.com/compare/ecwid-vs-medusa.min.md\n- Over MCP at https://www.anchorterminal.com/mcp (no key): `compare_tools {\"a\": \"ecwid\", \"b\": \"medusa\"}`. From a terminal: `anchor compare ecwid medusa`\n- Each listing in full: https://www.anchorterminal.com/api/v1/tools/ecwid.json and https://www.anchorterminal.com/api/v1/tools/medusa.json\n\n## Other comparisons with Ecwid by Lightspeed or Medusa API + MCP\n\n- [Adobe Commerce (Magento) vs Ecwid by Lightspeed](https://www.anchorterminal.com/compare/adobe-commerce-vs-ecwid.md)\n- [Adobe Commerce (Magento) vs Medusa API + MCP](https://www.anchorterminal.com/compare/adobe-commerce-vs-medusa.md)\n- [BigCommerce API + MCP vs Ecwid by Lightspeed](https://www.anchorterminal.com/compare/bigcommerce-vs-ecwid.md)\n- [BigCommerce API + MCP vs Medusa API + MCP](https://www.anchorterminal.com/compare/bigcommerce-vs-medusa.md)\n- [Commerce Layer API + MCP vs Ecwid by Lightspeed](https://www.anchorterminal.com/compare/commerce-layer-vs-ecwid.md)\n- [Commerce Layer API + MCP vs Medusa API + MCP](https://www.anchorterminal.com/compare/commerce-layer-vs-medusa.md)\n- [commercetools vs Ecwid by Lightspeed](https://www.anchorterminal.com/compare/commercetools-vs-ecwid.md)\n- [commercetools vs Medusa API + MCP](https://www.anchorterminal.com/compare/commercetools-vs-medusa.md)\n- [Ecwid by Lightspeed vs Elastic Path API + MCP](https://www.anchorterminal.com/compare/ecwid-vs-elastic-path.md)\n- [Ecwid by Lightspeed vs Saleor API + MCP](https://www.anchorterminal.com/compare/ecwid-vs-saleor.md)\n- [Ecwid by Lightspeed vs Shopify API + MCP](https://www.anchorterminal.com/compare/ecwid-vs-shopify.md)\n- [Ecwid by Lightspeed vs Shopware](https://www.anchorterminal.com/compare/ecwid-vs-shopware.md)\n- [Ecwid by Lightspeed vs Snipcart API + MCP](https://www.anchorterminal.com/compare/ecwid-vs-snipcart.md)\n- [Ecwid by Lightspeed vs Square](https://www.anchorterminal.com/compare/ecwid-vs-square.md)\n- [Ecwid by Lightspeed vs Swell](https://www.anchorterminal.com/compare/ecwid-vs-swell.md)\n- [Ecwid by Lightspeed vs Vendure](https://www.anchorterminal.com/compare/ecwid-vs-vendure.md)\n- [Ecwid by Lightspeed vs Wix Stores and eCommerce API](https://www.anchorterminal.com/compare/ecwid-vs-wix.md)\n- [Ecwid by Lightspeed vs WooCommerce API + MCP](https://www.anchorterminal.com/compare/ecwid-vs-woocommerce.md)\n- [Elastic Path API + MCP vs Medusa API + MCP](https://www.anchorterminal.com/compare/elastic-path-vs-medusa.md)\n- [Medusa API + MCP vs Saleor API + MCP](https://www.anchorterminal.com/compare/medusa-vs-saleor.md)\n- [Medusa API + MCP vs Shopify API + MCP](https://www.anchorterminal.com/compare/medusa-vs-shopify.md)\n- [Medusa API + MCP vs Shopware](https://www.anchorterminal.com/compare/medusa-vs-shopware.md)\n- [Medusa API + MCP vs Snipcart API + MCP](https://www.anchorterminal.com/compare/medusa-vs-snipcart.md)\n- [Medusa API + MCP vs Square](https://www.anchorterminal.com/compare/medusa-vs-square.md)\n- [Medusa API + MCP vs Swell](https://www.anchorterminal.com/compare/medusa-vs-swell.md)\n- [Medusa API + MCP vs Vendure](https://www.anchorterminal.com/compare/medusa-vs-vendure.md)\n- [Medusa API + MCP vs Wix Stores and eCommerce API](https://www.anchorterminal.com/compare/medusa-vs-wix.md)\n- [Medusa API + MCP vs WooCommerce API + MCP](https://www.anchorterminal.com/compare/medusa-vs-woocommerce.md)\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-08",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.4",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Compare",
        "url": "https://www.anchorterminal.com/compare/"
      },
      {
        "name": "Ecwid by Lightspeed vs Medusa API + MCP",
        "url": ""
      }
    ],
    "description": "Medusa API + MCP and Ecwid by Lightspeed score within a point of each other on agent readiness, 63.5 (B) and 63.2 (B). Ecwid by Lightspeed leads on reliability and security \u0026 auth. Both do commerce products. Category scores, facts, verdicts and agent notes side by side.",
    "facts": [
      "Ecwid by Lightspeed B 63.2",
      "Medusa API + MCP B 63.5",
      "scores"
    ],
    "h1": "Ecwid by Lightspeed vs Medusa API + MCP",
    "image": "https://www.anchorterminal.com/assets/og/compare-ecwid-vs-medusa.png",
    "path": "/compare/ecwid-vs-medusa",
    "published": "2026-10-01",
    "section": "tools",
    "title": "Ecwid by Lightspeed vs Medusa API + MCP for AI agents",
    "toc": null,
    "updated": "2026-10-08",
    "url": "https://www.anchorterminal.com/compare/ecwid-vs-medusa"
  },
  "tokens": {
    "markdown": 2650,
    "slim": 730
  },
  "version": 1
}
