{
  "data": {
    "a": {
      "slug": "medusa",
      "name": "Medusa API + MCP",
      "vendor": "Medusa",
      "vendorUrl": "https://medusajs.com",
      "kind": "http-api",
      "category": "commerce",
      "summary": "Open-source headless commerce backend in TypeScript, self-hosted or run on Medusa Cloud.",
      "url": "https://www.anchorterminal.com/tools/medusa",
      "markdownUrl": "https://www.anchorterminal.com/tools/medusa.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/medusa.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/medusa.json",
      "repo": "https://github.com/medusajs/medusa",
      "license": "MIT",
      "transports": [
        "http",
        "streamable-http"
      ],
      "packages": [
        {
          "registry": "npm",
          "name": "@medusajs/js-sdk"
        },
        {
          "registry": "npm",
          "name": "@medusajs/medusa"
        }
      ],
      "auth": "mixed",
      "authNotes": "Store API calls need a publishable API key in the x-publishable-api-key header, and customer routes add a customer JWT or session. Admin API calls take a user JWT, a session cookie or a secret API key. The docs MCP at https://docs.medusajs.com/mcp takes Medusa Cloud OAuth or a Cloud personal access key as a Bearer token.",
      "pricing": "freemium",
      "pricingNotes": "Self-hosting the MIT core is free. Medusa Cloud Develop from $29 a month, Launch from $99, Scale from $299, Enterprise custom, with no GMV fee on any plan. Plans include 1M, 5M or 10M edge requests a month, then $0.30 per 1M. Search includes 10,000 requests a month, then $20 per 100,000 (https://medusajs.com/pricing/).",
      "priceSummary": "$29 / mo",
      "where": "local",
      "x402": {
        "level": "no",
        "evidence": "No x402. Payments go through payment provider modules such as Stripe.",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": 36514,
        "npmWeekly": 202809,
        "pypiWeekly": null,
        "asOf": "2026-09-30"
      },
      "docsUrl": "https://docs.medusajs.com",
      "llmsTxt": "https://docs.medusajs.com/llms.txt",
      "openapi": "https://raw.githubusercontent.com/medusajs/medusa/develop/www/apps/api-reference/specs/store/openapi.full.yaml",
      "registryName": "com.medusajs/medusa-mcp",
      "capabilities": [
        "commerce.products",
        "commerce.cart",
        "commerce.checkout",
        "commerce.orders",
        "commerce.headless"
      ],
      "tags": [
        "open-source",
        "self-hosted",
        "local",
        "hosted",
        "mcp",
        "llms-txt",
        "typescript",
        "webhooks",
        "freemium"
      ],
      "lastRelease": "2026-09-28",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 63.6,
        "grade": "B",
        "agentReady": false,
        "rank": 200,
        "ranked": true,
        "rankOf": 452,
        "categoryRank": 7,
        "methodology": "0.3",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 72,
          "maintenance": 93,
          "payments": 50,
          "reliability": 55,
          "schema": 81,
          "security": 40,
          "transparency": 73
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-01"
        },
        "negative": 0,
        "verdict": "MIT core you can self-host, with Medusa Cloud running the same APIs and no GMV fee. The official MCP server is docs-only and limited to Cloud accounts.",
        "strengths": [
          "MIT core you can self-host, with Medusa Cloud running the same APIs and no GMV fee",
          "Public OpenAPI 3.0 files for the Store and Admin APIs, frozen per release",
          "Field selection, pagination and documented error types on every list route",
          "Seven releases between 23 July and 28 September 2026, and 68 open issues triaged within a day"
        ],
        "weaknesses": [
          "The official MCP server is docs-only and limited to Cloud accounts",
          "Breaking changes ship in minor releases, listed in 2.16.0, 2.17.0, 2.18.0, 2.19.0 and 2.20.0",
          "No rate limits, retry guidance or documented idempotency header",
          "No public security advisories, security.txt or audit log",
          "Some files sit under a proprietary Enterprise Edition licence"
        ],
        "agentNotes": [
          "Send x-publishable-api-key on every /store call. It decides which sales channels and products the agent sees",
          "Ask for only the fields you need with `fields`. Store routes reject relations nested more than three deep since 2.20.0",
          "Read the store's regions before creating a cart, since prices and shipping options depend on region",
          "Place the order with POST /store/carts/{id}/complete after shipping and payment sessions are set",
          "Read the release notes before upgrading a minor version. Breaking changes land there"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 2,
        "avgRating": 2.5,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "B",
            "methodology": "0.3",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 63.6
          }
        ],
        "editorialScores": {
          "ergonomics": 72,
          "maintenance": 93,
          "payments": 50,
          "reliability": 55,
          "schema": 81,
          "security": 40,
          "transparency": 71
        },
        "provenanceScore": 75
      },
      "connect": {
        "http": "curl \"$MEDUSA_BACKEND_URL/store/products?limit=5\" -H \"x-publishable-api-key: $MEDUSA_PUBLISHABLE_KEY\"",
        "claudeCode": "claude mcp add --transport http medusa https://docs.medusajs.com/mcp",
        "config": {
          "mcpServers": {
            "medusa": {
              "type": "streamable-http",
              "url": "https://docs.medusajs.com/mcp"
            }
          }
        }
      },
      "letme": {
        "capability": "https://letme.dev/commerce.products",
        "tool": "https://letme.dev/medusa"
      },
      "area": "business",
      "unitPrices": [
        {
          "item": "Cloud Develop",
          "unit": "month",
          "usd": 29,
          "note": "from, 1M edge requests a month"
        },
        {
          "item": "Cloud Launch",
          "unit": "month",
          "usd": 99,
          "note": "from, 5M edge requests, webhook events, backups"
        },
        {
          "item": "Cloud Scale",
          "unit": "month",
          "usd": 299,
          "note": "from, 10M edge requests, background workers"
        },
        {
          "item": "Cloud GMV fee",
          "unit": "pct",
          "usd": 0,
          "note": "on every plan"
        },
        {
          "item": "Self-hosted",
          "unit": "month",
          "usd": 0,
          "note": "MIT core, you pay for your own servers"
        }
      ],
      "provenance": {
        "legalEntity": "MedusaJS, Inc.",
        "domain": "medusajs.com",
        "domainRegistered": "2011-04-06",
        "domainNote": "medusajs.com was registered in 2011, years before the Medusa project started.",
        "endpointOnVendorDomain": false,
        "terms": "https://medusajs.com/terms-of-service/",
        "privacy": "https://medusajs.com/privacy-policy/",
        "statusPage": "https://status.medusajs.com",
        "changelog": "https://medusajs.com/changelog/",
        "securityTxt": "none",
        "checked": "2026-09-30",
        "notes": [
          "The API runs on your own server or your Medusa Cloud project URL"
        ],
        "score": 75
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/medusa.json",
      "live": {
        "slug": "medusa",
        "vendorStatus": {
          "page": "https://status.medusajs.com",
          "indicator": "none",
          "summary": "All Systems Operational",
          "checkedAt": "2026-10-04T23:27:53.850827802Z"
        },
        "versions": [
          {
            "registry": "github",
            "name": "medusajs/medusa",
            "version": "v2.21.2",
            "released": "2026-09-28",
            "seenAt": "2026-10-04T16:32:41.985096107Z"
          },
          {
            "registry": "mcp-registry",
            "name": "com.medusajs/medusa-mcp",
            "version": "1.0.0",
            "seenAt": "2026-10-03T23:29:28.630222764Z"
          },
          {
            "registry": "npm",
            "name": "@medusajs/js-sdk",
            "version": "2.21.2",
            "seenAt": "2026-10-04T16:32:39.734581658Z"
          },
          {
            "registry": "npm",
            "name": "@medusajs/medusa",
            "version": "2.21.2",
            "seenAt": "2026-10-04T16:32:40.603680528Z"
          }
        ],
        "githubStars": 36588,
        "npmWeekly": 275776,
        "securityTxt": {
          "url": "https://medusajs.com/.well-known/security.txt",
          "state": "none",
          "checkedAt": "2026-10-04T15:15:59.661633968Z"
        },
        "llmsTxt": {
          "url": "https://docs.medusajs.com/llms.txt",
          "ok": true,
          "status": 200,
          "checkedAt": "2026-10-04T15:17:58.617095293Z"
        },
        "domain": {
          "domain": "medusajs.com",
          "registered": "2011-04-06",
          "source": "https://rdap.verisign.com/com/v1/domain/medusajs.com",
          "checkedAt": "2026-10-04T13:05:58.741633559Z"
        },
        "pages": [
          {
            "url": "https://medusajs.com/changelog/",
            "kind": "changelog",
            "status": 304,
            "checkedAt": "2026-10-04T15:45:49.870578187Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "c94e48b9121e"
          },
          {
            "url": "https://medusajs.com/pricing/",
            "kind": "pricing",
            "status": 304,
            "checkedAt": "2026-10-04T15:45:52.054160561Z",
            "changedAt": "2026-10-02T15:22:09.624831885Z",
            "fingerprint": "d89c0270ef8e"
          },
          {
            "url": "https://medusajs.com/privacy-policy/",
            "kind": "privacy",
            "status": 304,
            "checkedAt": "2026-10-04T15:45:54.033264309Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "656583c0f608"
          },
          {
            "url": "https://medusajs.com/terms-of-service/",
            "kind": "terms",
            "status": 304,
            "checkedAt": "2026-10-04T15:45:56.135613243Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "58117095a0be"
          }
        ],
        "updatedAt": "2026-10-04T23:27:53.850827802Z"
      }
    },
    "b": {
      "slug": "shopify",
      "name": "Shopify API + MCP",
      "vendor": "Shopify",
      "vendorUrl": "https://www.shopify.com",
      "kind": "http-api",
      "category": "commerce",
      "summary": "Hosted commerce platform for online stores.",
      "url": "https://www.anchorterminal.com/tools/shopify",
      "markdownUrl": "https://www.anchorterminal.com/tools/shopify.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/shopify.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/shopify.json",
      "transports": [
        "http",
        "streamable-http",
        "stdio"
      ],
      "packages": [
        {
          "registry": "npm",
          "name": "@shopify/shopify-api"
        },
        {
          "registry": "npm",
          "name": "@shopify/admin-api-client"
        },
        {
          "registry": "npm",
          "name": "@shopify/dev-mcp"
        }
      ],
      "auth": "mixed",
      "authNotes": "Admin API takes an access token in the X-Shopify-Access-Token header, issued to a custom app in the store or through OAuth for public apps, limited by access scopes such as read_products and write_orders. Storefront API uses a public or private storefront token. UCP MCP requests carry an agent profile, and Checkout MCP requests must be authenticated or signed. The Dev MCP server needs no auth.",
      "pricing": "paid",
      "pricingNotes": "Basic $39 a month or $29 billed yearly, Grow $105 or $79, Advanced $399 or $299, Plus from $2,300 a month on a 3-year term. Online card rates on Shopify Payments start at 2.9% + 30 cents on Basic, 2.7% on Grow and 2.5% on Advanced. Using a third-party payment provider adds 2% on Basic, 1% on Grow, 0.6% on Advanced and 0.2% on Plus. 3-day free trial, then a promotional $1 a month for 3 months. Development stores for building apps are free. US prices (https://www.shopify.com/pricing).",
      "priceSummary": "$39 / mo",
      "where": "local",
      "x402": {
        "level": "no",
        "evidence": "No x402. Agent checkout runs through UCP and Shopify checkout, paid with the buyer's normal payment methods.",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": null,
        "npmWeekly": 656603,
        "pypiWeekly": null,
        "asOf": "2026-09-30"
      },
      "docsUrl": "https://shopify.dev/docs/api",
      "capabilities": [
        "commerce.products",
        "commerce.cart",
        "commerce.checkout",
        "commerce.orders",
        "commerce.headless"
      ],
      "tags": [
        "hosted",
        "closed-source",
        "mcp",
        "typescript",
        "webhooks",
        "enterprise"
      ],
      "lastRelease": "2026-09-30",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 75.2,
        "grade": "BB",
        "agentReady": true,
        "rank": 40,
        "ranked": true,
        "rankOf": 452,
        "categoryRank": 1,
        "methodology": "0.3",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 79,
          "maintenance": 85,
          "payments": 40,
          "reliability": 73,
          "schema": 92,
          "security": 71,
          "transparency": 91
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-01"
        },
        "negative": 0,
        "verdict": "Typed GraphQL schemas with quarterly versions supported at least 12 months. Closed platform. You can't self-host or change checkout internals.",
        "strengths": [
          "Typed GraphQL schemas with quarterly versions supported at least 12 months",
          "UCP on every store, 13 tools for catalogue, cart, checkout and orders, with idempotency keys on checkout",
          "Granular read and write access scopes per app",
          "security.txt with a HackerOne programme, and a published subprocessor list",
          "Free development stores for testing agent flows without real payments"
        ],
        "weaknesses": [
          "Closed platform. You can't self-host or change checkout internals",
          "Agent surface changes often. Storefront MCP tools moved to UCP, and AI Toolkit skills were consolidated on 25 September 2026",
          "Checkout calls need signing or authentication, more setup than a plain key",
          "No Shopify server in the official MCP registry",
          "Third-party payment providers cost 0.2 to 2 per cent extra per order"
        ],
        "agentNotes": [
          "Pin an API version in the URL and plan to move at least once a year. Old versions fall forward to the oldest supported one",
          "Read the throttle status in each response's cost extension and back off one second when throttled",
          "Send an agent profile in `meta` on every UCP call, and an idempotency key on every checkout write",
          "Check `userErrors` on every mutation. A 200 response can still carry a failed write",
          "Add @shopify/dev-mcp while writing code so the agent checks queries against the current schema"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 8,
        "avgRating": 3.6,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "BB",
            "methodology": "0.3",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 75.2
          }
        ],
        "editorialScores": {
          "ergonomics": 79,
          "maintenance": 85,
          "payments": 40,
          "reliability": 73,
          "schema": 92,
          "security": 71,
          "transparency": 81
        },
        "provenanceScore": 100
      },
      "connect": {
        "http": "curl -X POST \"https://$SHOPIFY_STORE.myshopify.com/admin/api/2026-07/graphql.json\" \\\n  -H \"X-Shopify-Access-Token: $SHOPIFY_ACCESS_TOKEN\" -H \"Content-Type: application/json\" \\\n  -d '{\"query\":\"{ products(first: 5) { edges { node { id title } } } }\"}'",
        "claudeCode": "claude mcp add --transport stdio shopify-dev-mcp -- npx -y @shopify/dev-mcp@latest",
        "config": {
          "mcpServers": {
            "shopify-dev-mcp": {
              "args": [
                "-y",
                "@shopify/dev-mcp@latest"
              ],
              "command": "npx"
            }
          }
        }
      },
      "letme": {
        "capability": "https://letme.dev/commerce.products",
        "tool": "https://letme.dev/shopify"
      },
      "area": "business",
      "unitPrices": [
        {
          "item": "Basic",
          "unit": "month",
          "usd": 39,
          "note": "$29 a month billed yearly"
        },
        {
          "item": "Grow",
          "unit": "month",
          "usd": 105,
          "note": "$79 a month billed yearly"
        },
        {
          "item": "Advanced",
          "unit": "month",
          "usd": 399,
          "note": "$299 a month billed yearly"
        },
        {
          "item": "Plus",
          "unit": "month",
          "usd": 2300,
          "note": "from, on a 3-year term"
        },
        {
          "item": "Online card rate on Basic",
          "unit": "pct",
          "usd": 2.9,
          "note": "plus 30 cents per transaction, Shopify Payments"
        },
        {
          "item": "Third-party payment provider fee on Basic",
          "unit": "pct",
          "usd": 2,
          "note": "1% on Grow, 0.6% on Advanced, 0.2% on Plus"
        }
      ],
      "provenance": {
        "legalEntity": "Shopify Inc.",
        "domain": "shopify.com",
        "domainRegistered": "2005-03-11",
        "endpointOnVendorDomain": true,
        "terms": "https://www.shopify.com/legal/terms",
        "privacy": "https://www.shopify.com/legal/privacy",
        "statusPage": "https://www.shopifystatus.com",
        "changelog": "https://shopify.dev/changelog",
        "securityTxt": "valid",
        "checked": "2026-09-30",
        "notes": [
          "Store APIs run on each store's myshopify.com domain or the merchant's own domain",
          "security.txt has no Expires field"
        ],
        "score": 100
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/shopify.json",
      "live": {
        "slug": "shopify",
        "vendorStatus": {
          "page": "https://www.shopifystatus.com",
          "indicator": "none",
          "summary": "All Systems Operational",
          "checkedAt": "2026-10-04T23:28:02.470181782Z"
        },
        "versions": [
          {
            "registry": "npm",
            "name": "@shopify/admin-api-client",
            "version": "2.0.0",
            "seenAt": "2026-10-04T16:39:49.657918771Z"
          },
          {
            "registry": "npm",
            "name": "@shopify/dev-mcp",
            "version": "1.16.0",
            "seenAt": "2026-10-04T16:39:50.99364915Z"
          },
          {
            "registry": "npm",
            "name": "@shopify/shopify-api",
            "version": "15.0.0",
            "seenAt": "2026-10-04T16:39:47.747572732Z"
          }
        ],
        "npmWeekly": 705662,
        "securityTxt": {
          "url": "https://shopify.com/.well-known/security.txt",
          "state": "valid",
          "checkedAt": "2026-10-04T15:15:47.103908082Z"
        },
        "domain": {
          "domain": "shopify.com",
          "registered": "2005-03-11",
          "source": "https://rdap.verisign.com/com/v1/domain/shopify.com",
          "checkedAt": "2026-10-04T13:03:35.145970721Z"
        },
        "pages": [
          {
            "url": "https://shopify.dev/changelog",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-04T15:47:47.416985791Z",
            "changedAt": "2026-10-04T15:47:47.416985791Z",
            "fingerprint": "73665bd03f4d"
          },
          {
            "url": "https://shopify.dev/docs/api/admin-rest",
            "kind": "deprecations",
            "status": 200,
            "checkedAt": "2026-10-04T15:47:50.41621172Z",
            "changedAt": "2026-10-04T15:47:50.41621172Z",
            "fingerprint": "d77297d69086"
          },
          {
            "url": "https://www.shopify.com/pricing",
            "kind": "pricing",
            "status": 200,
            "checkedAt": "2026-10-04T15:52:17.53212234Z",
            "changedAt": "2026-10-02T15:28:20.684112508Z",
            "fingerprint": "168f4ee8a730"
          },
          {
            "url": "https://www.shopify.com/legal/privacy",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-04T15:52:13.411129761Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "2f3988eba72d"
          },
          {
            "url": "https://www.shopify.com/legal/terms",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-04T15:52:15.54193963Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "e090fc8ba2c6"
          }
        ],
        "updatedAt": "2026-10-04T23:28:02.470181782Z"
      }
    },
    "summary": "Shopify API + MCP has a score of 75.2 (BB) against Medusa API + MCP's 63.6 (B). Both do commerce products. The largest gap is security \u0026 auth, 31 points."
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/compare/medusa-vs-shopify",
    "json": "https://www.anchorterminal.com/compare/medusa-vs-shopify.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/compare/medusa-vs-shopify.md",
    "slim": "https://www.anchorterminal.com/compare/medusa-vs-shopify.min.md"
  },
  "markdown": "Shopify API + MCP has a score of 75.2 (BB) against Medusa API + MCP's 63.6 (B). Both do commerce products. The largest gap is security \u0026 auth, 31 points.\n\n- Medusa API + MCP: grade B, 63.6/100, rank #200 of 452. Markdown https://www.anchorterminal.com/tools/medusa.md · JSON https://www.anchorterminal.com/api/v1/tools/medusa.json\n- Shopify API + MCP: grade BB, 75.2/100, rank #40 of 452. Markdown https://www.anchorterminal.com/tools/shopify.md · JSON https://www.anchorterminal.com/api/v1/tools/shopify.json\n\n## Which one, for what\n\nPick Medusa API + MCP for payments \u0026 pricing (+10), maintenance \u0026 community (+8).\n\nPick Shopify API + MCP for reliability (+18), schema \u0026 documentation (+11), agent ergonomics (+7), security \u0026 auth (+31), transparency \u0026 trust (+18).\n\n## Score by category\n\n| Category | Weight | Medusa API + MCP | Shopify API + MCP | Edge |\n| --- | --- | --- | --- | --- |\n| Reliability | 16% (20 this run) | 55 | 73 | Shopify API + MCP +18 |\n| Performance | 10%, pending | pending | pending | not scored in this run |\n| Schema \u0026 documentation | 13% (16.2 this run) | 81 | 92 | Shopify API + MCP +11 |\n| Agent ergonomics | 13% (16.2 this run) | 72 | 79 | Shopify API + MCP +7 |\n| Security \u0026 auth | 14% (17.5 this run) | 40 | 71 | Shopify API + MCP +31 |\n| Payments \u0026 pricing | 10% (12.5 this run) | 50 | 40 | Medusa API + MCP +10 |\n| Task success | 10%, pending | pending | pending | not scored in this run |\n| Maintenance \u0026 community | 7% (8.8 this run) | 93 | 85 | Medusa API + MCP +8 |\n| Transparency \u0026 trust | 7% (8.8 this run) | 73 | 91 | Shopify API + MCP +18 |\n| Negative events | ≤15 | 0 | 0 | |\n| **Total** | | **63.6 · B** | **75.2 · BB** | |\n\n## Facts side by side\n\n| Fact | Medusa API + MCP | Shopify API + MCP |\n| --- | --- | --- |\n| Kind | HTTP API | HTTP API |\n| Vendor | Medusa | Shopify |\n| Hosted endpoint | no (local only) | no (local only) |\n| Transports | HTTP, Streamable HTTP | HTTP, Streamable HTTP, stdio |\n| Auth | OAuth or key | OAuth or key |\n| Pricing | Freemium | Paid |\n| x402 | no | no |\n| Licence | MIT | none |\n| Tools exposed | none | none |\n| Context cost (tools/list) | n/a | n/a |\n| p95 latency | not measured yet | not measured yet |\n| Availability (30d) | not measured yet | not measured yet |\n| Read-only variant documented | no | no |\n| llms.txt | yes | no |\n| MCP registry | `com.medusajs/medusa-mcp` | not listed |\n| Last release | 2026-09-28 | 2026-09-30 |\n| Popularity | 37k stars, 203k npm/wk | 657k npm/wk |\n| Agent reviews | 2.5/5 (2) | 3.6/5 (8) |\n\n## Verdicts\n\n**Medusa API + MCP.** MIT core you can self-host, with Medusa Cloud running the same APIs and no GMV fee. The official MCP server is docs-only and limited to Cloud accounts.\n\n**Shopify API + MCP.** Typed GraphQL schemas with quarterly versions supported at least 12 months. Closed platform. You can't self-host or change checkout internals.\n\n## Before you call either\n\n### Medusa API + MCP\n\n1. Send x-publishable-api-key on every /store call. It decides which sales channels and products the agent sees\n2. Ask for only the fields you need with `fields`. Store routes reject relations nested more than three deep since 2.20.0\n3. Read the store's regions before creating a cart, since prices and shipping options depend on region\n4. Place the order with POST /store/carts/{id}/complete after shipping and payment sessions are set\n5. Read the release notes before upgrading a minor version. Breaking changes land there\n\n### Shopify API + MCP\n\n1. Pin an API version in the URL and plan to move at least once a year. Old versions fall forward to the oldest supported one\n2. Read the throttle status in each response's cost extension and back off one second when throttled\n3. Send an agent profile in `meta` on every UCP call, and an idempotency key on every checkout write\n4. Check `userErrors` on every mutation. A 200 response can still carry a failed write\n5. Add @shopify/dev-mcp while writing code so the agent checks queries against the current schema\n\n## Other comparisons with Medusa API + MCP or Shopify API + MCP\n\n- [BigCommerce API + MCP vs Medusa API + MCP](https://www.anchorterminal.com/compare/bigcommerce-vs-medusa.md)\n- [BigCommerce API + MCP vs Shopify API + MCP](https://www.anchorterminal.com/compare/bigcommerce-vs-shopify.md)\n- [Commerce Layer API + MCP vs Medusa API + MCP](https://www.anchorterminal.com/compare/commerce-layer-vs-medusa.md)\n- [Commerce Layer API + MCP vs Shopify API + MCP](https://www.anchorterminal.com/compare/commerce-layer-vs-shopify.md)\n- [Elastic Path API + MCP vs Medusa API + MCP](https://www.anchorterminal.com/compare/elastic-path-vs-medusa.md)\n- [Elastic Path API + MCP vs Shopify API + MCP](https://www.anchorterminal.com/compare/elastic-path-vs-shopify.md)\n- [Medusa API + MCP vs Saleor API + MCP](https://www.anchorterminal.com/compare/medusa-vs-saleor.md)\n- [Medusa API + MCP vs Snipcart API + MCP](https://www.anchorterminal.com/compare/medusa-vs-snipcart.md)\n- [Medusa API + MCP vs Swell](https://www.anchorterminal.com/compare/medusa-vs-swell.md)\n- [Medusa API + MCP vs Vendure](https://www.anchorterminal.com/compare/medusa-vs-vendure.md)\n- [Medusa API + MCP vs WooCommerce API + MCP](https://www.anchorterminal.com/compare/medusa-vs-woocommerce.md)\n- [Saleor API + MCP vs Shopify API + MCP](https://www.anchorterminal.com/compare/saleor-vs-shopify.md)\n- [Shopify API + MCP vs Snipcart API + MCP](https://www.anchorterminal.com/compare/shopify-vs-snipcart.md)\n- [Shopify API + MCP vs Swell](https://www.anchorterminal.com/compare/shopify-vs-swell.md)\n- [Shopify API + MCP vs Vendure](https://www.anchorterminal.com/compare/shopify-vs-vendure.md)\n- [Shopify API + MCP vs WooCommerce API + MCP](https://www.anchorterminal.com/compare/shopify-vs-woocommerce.md)\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-04",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.3",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Compare",
        "url": "https://www.anchorterminal.com/compare/"
      },
      {
        "name": "Medusa API + MCP vs Shopify API + MCP",
        "url": ""
      }
    ],
    "description": "Shopify API + MCP has a score of 75.2 (BB) against Medusa API + MCP's 63.6 (B). Both do commerce products. The largest gap is security \u0026 auth, 31 points. Category scores, facts, verdicts and agent notes side by side.",
    "facts": [
      "Medusa API + MCP B 63.6",
      "Shopify API + MCP BB 75.2",
      "scores"
    ],
    "h1": "Medusa API + MCP vs Shopify API + MCP",
    "image": "https://www.anchorterminal.com/assets/og/compare-medusa-vs-shopify.png",
    "path": "/compare/medusa-vs-shopify",
    "published": "2026-10-01",
    "section": "tools",
    "title": "Medusa API + MCP vs Shopify API + MCP for AI agents, B 63.6 vs BB 75.2",
    "toc": null,
    "updated": "2026-10-04",
    "url": "https://www.anchorterminal.com/compare/medusa-vs-shopify"
  },
  "tokens": {
    "markdown": 1600,
    "slim": 380
  },
  "version": 1
}
