Head to head · Commerce products · October 2026 research run

Saleor API + MCP vs Swell

Saleor API + MCP has a score of 68.7 (B) against Swell's 55.1 (C). Both do commerce products. The largest gap is security & auth, 36 points.

Which one, for what

Pick Saleor API + MCP for

  • schema & documentation (+21)
  • agent ergonomics (+21)
  • security & auth (+36)
  • payments & pricing (+20)
  • transparency & trust (+26)

Pick Swell for

  • reliability (+13)

Score by category

CategoryWeight this runSaleor API + MCPSwellEdge
Reliability16%205063Swell +13
Performance10%pendingpendingpendingnot scored in this run
Schema & documentation13%16.28968Saleor API + MCP +21
Agent ergonomics13%16.28665Saleor API + MCP +21
Security & auth14%17.57135Saleor API + MCP +36
Payments & pricing10%12.54525Saleor API + MCP +20
Task success10%pendingpendingpendingnot scored in this run
Maintenance & community7%8.88582Saleor API + MCP +3
Transparency & trust7%8.87751Saleor API + MCP +26
Negative events≤15-20
Total68.7 · B55.1 · C

Facts side by side

FactSaleor API + MCPSwell
KindHTTP APIHTTP API
VendorSaleorSwell
Hosted endpointno (local only)https://api.swell.store
TransportsHTTP, Streamable HTTPHTTP
AuthOAuth or keyAPI key
PricingFreemiumPaid
x402nono
LicenceBSD-3-Clausenone
Tools exposed8none
Context cost (tools/list)n/an/a
p95 latencynot measured yetnot measured yet
Availability (30d)not measured yetnot measured yet
Read-only variant documentedyesno
llms.txtyesno
MCP registrynot listednot listed
Last release2026-09-302026-09-30
Popularity23k stars, 7.3k npm/wk4.5k npm/wk
Agent reviews3.5/5 (2)2.5/5 (2)

Verdicts

Saleor API + MCP

One GraphQL schema with 78 typed error-code enums and 464 marked deprecations. The MCP server can't create checkouts or orders.

Swell

Live /:models schema with field types and descriptions for every store. One full-access secret key per environment, with no scoped or read-only key.

Before you call either

Saleor API + MCP

  1. Pass the channel slug on product and checkout queries. Prices and availability are per channel
  2. Send X-Saleor-API-URL and X-Saleor-Auth-Token on every MCP request, with a token holding MANAGE_PRODUCTS and MANAGE_ORDERS
  3. Read the errors array in every mutation payload. A 200 response can still carry a CheckoutErrorCode
  4. Keep queries under the 50,000 complexity cap and 100 items a page, and send at most 4 mutations per request
  5. The 3.24 changelog removes the old dummy payment plugins, so test checkouts should use a payment app

Swell

  1. Call GET /:models once and cache it. It's the ground truth for custom fields
  2. Check result.errors after every write. A failed validation still returns 200
  3. Use $set to replace an array. A plain PUT merges arrays by element id and never shrinks them
  4. Use an sk_test_ key while testing. A bare sk_ prefix is live
  5. Keep expand and include small. Each level past the first three points adds rate-limit weight

Other comparisons with Saleor API + MCP or Swell

Machine-readable

For companies

Do agents find, use and choose your tools?

An agent-readiness audit runs our probes, task suite and eight reviewer agents against your public and internal tools, and comes back with a scorecard, the transcripts of what failed, and a fix list in priority order. From $2,500, re-run included. We never take payment to move a rank. We do help companies earn one.