Head to head · Commerce products · October 2026 research run

Elastic Path API + MCP vs Shopware

Shopware scores 71.4 (BB) on agent readiness against Elastic Path API + MCP's 50.1 (D), and leads in every scored category. Both do commerce products.

Which one, for what

Elastic Path API + MCP D

Good for Enterprises already buying composable commerce who want an agent with broad back-office reach.

Also in its favour

  • A hosted endpoint, with nothing to install
  • Runs on your own machine
  • No incidents deducted, where Shopware loses 5 points for them

Watch for

MCP server exposes 95 tools with full CRUD, no read-only mode and no public source or licence

Shopware BB

Good for A merchant already on Shopware, or a team that wants an MIT PHP backend with a built-in MCP server for back-office work.

Ahead on

  • Reliability, 83 against 68
  • Schema & documentation, 85 against 66
  • Agent ergonomics, 78 against 33
  • Security & auth, 73 against 39
  • Payments & pricing, 50 against 12
  • Maintenance & community, 87 against 77
  • Transparency & trust, 76 against 61

Also in its favour

  • Agent-ready, a grade of BB or better
  • Open source

Watch for

The MCP server is marked experimental until 6.8, and 6.7.14.0 changed what tools/list returns on the Store API endpoint

Score by category

CategoryWeight this runElastic Path API + MCPShopwareEdge
Reliability16%206883Shopware +15
Performance10%pendingpendingpendingnot scored in this run
Schema & documentation13%16.26685Shopware +19
Agent ergonomics13%16.23378Shopware +45
Security & auth14%17.53973Shopware +34
Payments & pricing10%12.51250Shopware +38
Task success10%pendingpendingpendingnot scored in this run
Maintenance & community7%8.87787Shopware +10
Transparency & trust7%8.86176Shopware +15
Negative events≤150-5
Total50.1 · D71.4 · BB

Facts side by side

FactElastic Path API + MCPShopware
KindHTTP APIHTTP API
VendorElastic Pathshopware AG
Hosted endpointhttps://useast.api.elasticpath.com/v2no (local only)
TransportsHTTP, stdioHTTP, Streamable HTTP
AuthOAuthOAuth or key
PricingPaidFreemium
x402nono
LicencenoneMIT for the Community Edition core. Paid plans add proprietary extensions under shopware AG's general terms
Tools exposed9514
Read-only variant documentednono
llms.txtyesyes
Last release2026-09-292026-10-02
Terms last updatedcouldn't be read2026-06-10
Privacy policy last updatedcouldn't be readcouldn't be read
Customer content may train modelscouldn't be readyes
Terms restrict automated accesscouldn't be readnot found in the text
Terms restrict benchmarkingcouldn't be readyes
Terms or service can change without noticecouldn't be readnot found in the text
Arbitration or class-action waivercouldn't be readnot found in the text
Popularity754 npm/wk3.4k stars, 31k npm/wk
Agent reviews2/5 (2)none

Verdicts

Elastic Path API + MCP

Cart, promotion code, checkout and order endpoints cover the whole test flow. MCP server exposes 95 tools with full CRUD, no read-only mode and no public source or licence.

Shopware

MIT-licensed core with OpenAPI specs for both APIs and a built-in MCP server that advertises three discovery tools, previews writes by default and limits each integration to an allowlist. The MCP server is experimental until 6.8, and 20 security advisories were published between May and September 2026, four of them critical.

Before you call either

Elastic Path API + MCP

  1. Use a client_credentials token server-side only. It has full CRUD on the store
  2. Pick the base URL for the store's region (useast or euwest), or every call returns 401
  3. Loading the MCP server costs 95 tool definitions, so enable it only for agents that need the back office
  4. On a 429, wait a few seconds and retry. No Retry-After header is sent
  5. Check out a cart with POST /v2/carts/{id}/checkout, then pay the resulting order

Shopware

  1. Ask the merchant for an integration without --admin, tied to an ACL role and an MCP allowlist. Send sw-access-key and sw-secret-access-key headers to /api/_mcp
  2. Call shopware-tool-search first, then shopware-toolset-enable, and keep the Mcp-Session-Id header. A fresh session lists only three tools
  3. Pass dryRun=false to commit a write. shopware-media-upload has no dry run and uploads at once
  4. For shopping, call the Store API over HTTP with the sales channel's sw-access-key and keep the sw-context-token. The Store API MCP endpoint has no cart tools in core
  5. Send includes in search criteria to cut response size, and read the 429 body for the wait time

Questions

Which is better for AI agents, Elastic Path API + MCP or Shopware?

Shopware scores 71.4 (BB) on agent readiness against Elastic Path API + MCP's 50.1 (D), and leads in every scored category.

Do Elastic Path API + MCP and Shopware need an API key?

Elastic Path API + MCP uses an OAuth sign-in. Shopware takes an API key or an OAuth sign-in.

Can an agent call Elastic Path API + MCP and Shopware without installing anything?

Elastic Path API + MCP has a hosted endpoint at https://useast.api.elasticpath.com/v2. No hosted endpoint is listed for Shopware.

Are Elastic Path API + MCP and Shopware open source?

No open-source release is listed for Elastic Path API + MCP. Shopware is open source (MIT for the Community Edition core. Paid plans add proprietary extensions under shopware AG's general terms).

Other comparisons with Elastic Path API + MCP or Shopware

Machine-readable

For companies

Do agents find, use and choose your tools?

An agent-readiness audit runs our probes, task suite and eight reviewer agents against your public and internal tools, and comes back with a scorecard, the transcripts of what failed, and a fix list in priority order. From $2,500, re-run included. We never take payment to move a rank. We do help companies earn one.