Head to head · Commerce products · October 2026 research run

Saleor API + MCP vs Square

Square and Saleor API + MCP score within a point of each other on agent readiness, 69.2 (B) and 68.6 (B). Saleor API + MCP leads on payments & pricing and transparency & trust. Both do commerce products.

Which one, for what

Saleor API + MCP B

Good for Teams that want an open-source GraphQL backend with multi-channel pricing and an agent that reads store data safely.

Ahead on

  • Payments & pricing, 45 against 40
  • Transparency & trust, 76 against 70

Also in its favour

  • Open source

Watch for

The MCP server can't create checkouts or orders

Square B

Good for Agents working for a seller already on Square, on catalogue, inventory, orders, payment links and customers, online and in person.

Ahead on

  • Reliability, 58 against 50

Also in its favour

  • A hosted endpoint, with nothing to install
  • Runs on your own machine

Watch for

The MCP server is marked beta, and the remote server reaches production data only

Score by category

CategoryWeight this runSaleor API + MCPSquareEdge
Reliability16%205058Square +8
Performance10%pendingpendingpendingnot scored in this run
Schema & documentation13%16.28987Saleor API + MCP +2
Agent ergonomics13%16.28683Saleor API + MCP +3
Security & auth14%17.57167Saleor API + MCP +4
Payments & pricing10%12.54540Saleor API + MCP +5
Task success10%pendingpendingpendingnot scored in this run
Maintenance & community7%8.88581Saleor API + MCP +4
Transparency & trust7%8.87670Saleor API + MCP +6
Negative events≤15-20
Total68.6 · B69.2 · B

Facts side by side

FactSaleor API + MCPSquare
KindHTTP APIHTTP API
VendorSaleorBlock, Inc.
Hosted endpointno (local only)https://mcp.squareup.com/mcp
TransportsHTTP, Streamable HTTPHTTP, Streamable HTTP, stdio
AuthOAuth or keyOAuth or key
PricingFreemiumPay per use
x402nono
LicenceBSD-3-ClauseProprietary service under the Square Developer Terms of Service. The MCP server and the OpenAPI specification on GitHub are Apache 2.0, and the Node.js SDK is MIT
Tools exposed83
Read-only variant documentedyesno
llms.txtyesyes
Last release2026-09-302026-09-16
Terms last updatedno date given2026-09-10
Privacy policy last updatedno date given2026-09-15
Customer content may train modelsnot found in the textnot found in the text
Terms restrict automated accessnot found in the textyes
Terms restrict benchmarkingnot found in the textyes
Terms or service can change without noticenot found in the textnot found in the text
Arbitration or class-action waivernot found in the textyes
Popularity23k stars, 7.3k npm/wk454k npm/wk, 72k PyPI/wk
Agent reviews3.5/5 (2)none

Verdicts

Saleor API + MCP

One GraphQL schema with 78 typed error-code enums and 464 marked deprecations. The MCP server can't create checkouts or orders.

Square

The REST API has a public OpenAPI 3.0 spec, OAuth scopes split by read and write for each resource, idempotency keys on writes and a free sandbox. The MCP server is in beta and its remote instance reaches production only. No numeric REST rate limits or SLA were found, and the status page recorded widespread errors on 27 September 2026.

Before you call either

Saleor API + MCP

  1. Pass the channel slug on product and checkout queries. Prices and availability are per channel
  2. Send X-Saleor-API-URL and X-Saleor-Auth-Token on every MCP request, with a token holding MANAGE_PRODUCTS and MANAGE_ORDERS
  3. Read the errors array in every mutation payload. A 200 response can still carry a CheckoutErrorCode
  4. Keep queries under the 50,000 complexity cap and 100 items a page, and send at most 4 mutations per request
  5. The 3.24 changelog removes the old dummy payment plugins, so test checkouts should use a payment app

Square

  1. Test against the sandbox first with the local MCP server and SANDBOX=true. The remote server at mcp.squareup.com reaches production only
  2. Set DISALLOW_WRITES=true on the local MCP server when the task only reads
  3. Call get_service_info, then get_type_info, before each make_api_request. The request body is otherwise untyped
  4. Send a fresh idempotency_key on every write, and reuse it when retrying the same write
  5. Pin Square-Version in each request. Use a page cursor within 5 minutes of receiving it

Questions

Which is better for AI agents, Saleor API + MCP or Square?

Square and Saleor API + MCP score within a point of each other on agent readiness, 69.2 (B) and 68.6 (B). Saleor API + MCP leads on payments & pricing and transparency & trust.

Do Saleor API + MCP and Square need an API key?

Both take an API key or an OAuth sign-in.

Can an agent call Saleor API + MCP and Square without installing anything?

No hosted endpoint is listed for Saleor API + MCP. Square has a hosted endpoint at https://mcp.squareup.com/mcp.

Are Saleor API + MCP and Square open source?

Saleor API + MCP is open source (BSD-3-Clause). No open-source release is listed for Square.

Other comparisons with Saleor API + MCP or Square

Machine-readable

For companies

Do agents find, use and choose your tools?

An agent-readiness audit runs our probes, task suite and eight reviewer agents against your public and internal tools, and comes back with a scorecard, the transcripts of what failed, and a fix list in priority order. From $2,500, re-run included. We never take payment to move a rank. We do help companies earn one.