{
  "data": {
    "a": {
      "slug": "shopify",
      "name": "Shopify API + MCP",
      "vendor": "Shopify",
      "vendorUrl": "https://www.shopify.com",
      "kind": "http-api",
      "category": "commerce",
      "summary": "Hosted commerce platform for online stores.",
      "url": "https://www.anchorterminal.com/tools/shopify",
      "markdownUrl": "https://www.anchorterminal.com/tools/shopify.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/shopify.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/shopify.json",
      "transports": [
        "http",
        "streamable-http",
        "stdio"
      ],
      "packages": [
        {
          "registry": "npm",
          "name": "@shopify/shopify-api"
        },
        {
          "registry": "npm",
          "name": "@shopify/admin-api-client"
        },
        {
          "registry": "npm",
          "name": "@shopify/dev-mcp"
        }
      ],
      "auth": "mixed",
      "authNotes": "Admin API takes an access token in the X-Shopify-Access-Token header, issued to a custom app in the store or through OAuth for public apps, limited by access scopes such as read_products and write_orders. Storefront API uses a public or private storefront token. UCP MCP requests carry an agent profile, and Checkout MCP requests must be authenticated or signed. The Dev MCP server needs no auth.",
      "pricing": "paid",
      "pricingNotes": "Basic $39 a month or $29 billed yearly, Grow $105 or $79, Advanced $399 or $299, Plus from $2,300 a month on a 3-year term. Online card rates on Shopify Payments start at 2.9% + 30 cents on Basic, 2.7% on Grow and 2.5% on Advanced. Using a third-party payment provider adds 2% on Basic, 1% on Grow, 0.6% on Advanced and 0.2% on Plus. 3-day free trial, then a promotional $1 a month for 3 months. Development stores for building apps are free. US prices (https://www.shopify.com/pricing).",
      "priceSummary": "$39 / mo",
      "where": "local",
      "x402": {
        "level": "no",
        "evidence": "No x402. Agent checkout runs through UCP and Shopify checkout, paid with the buyer's normal payment methods.",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": null,
        "npmWeekly": 656603,
        "pypiWeekly": null,
        "asOf": "2026-09-30"
      },
      "docsUrl": "https://shopify.dev/docs/api",
      "capabilities": [
        "commerce.products",
        "commerce.cart",
        "commerce.checkout",
        "commerce.orders",
        "commerce.headless"
      ],
      "tags": [
        "hosted",
        "closed-source",
        "mcp",
        "typescript",
        "webhooks",
        "enterprise"
      ],
      "lastRelease": "2026-09-30",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 75,
        "grade": "BB",
        "agentReady": true,
        "rank": 52,
        "ranked": true,
        "rankOf": 629,
        "categoryRank": 1,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 79,
          "maintenance": 85,
          "payments": 40,
          "reliability": 73,
          "schema": 92,
          "security": 71,
          "transparency": 88
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-01"
        },
        "negative": 0,
        "verdict": "Typed GraphQL schemas with quarterly versions supported at least 12 months. Closed platform. You can't self-host or change checkout internals.",
        "bestFor": "Agents that shop on real stores or automate a merchant's back office at scale.",
        "strengths": [
          "Typed GraphQL schemas with quarterly versions supported at least 12 months",
          "UCP on every store, 13 tools for catalogue, cart, checkout and orders, with idempotency keys on checkout",
          "Granular read and write access scopes per app",
          "security.txt with a HackerOne programme, and a published subprocessor list",
          "Free development stores for testing agent flows without real payments"
        ],
        "weaknesses": [
          "Closed platform. You can't self-host or change checkout internals",
          "Agent surface changes often. Storefront MCP tools moved to UCP, and AI Toolkit skills were consolidated on 25 September 2026",
          "Checkout calls need signing or authentication, more setup than a plain key",
          "No Shopify server in the official MCP registry",
          "Third-party payment providers cost 0.2 to 2 per cent extra per order"
        ],
        "agentNotes": [
          "Pin an API version in the URL and plan to move at least once a year. Old versions fall forward to the oldest supported one",
          "Read the throttle status in each response's cost extension and back off one second when throttled",
          "Send an agent profile in `meta` on every UCP call, and an idempotency key on every checkout write",
          "Check `userErrors` on every mutation. A 200 response can still carry a failed write",
          "Add @shopify/dev-mcp while writing code so the agent checks queries against the current schema"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 8,
        "avgRating": 3.6,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "BB",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 75
          }
        ],
        "editorialScores": {
          "ergonomics": 79,
          "maintenance": 85,
          "payments": 40,
          "reliability": 73,
          "schema": 92,
          "security": 71,
          "transparency": 81
        },
        "provenanceScore": 95
      },
      "connect": {
        "http": "curl -X POST \"https://$SHOPIFY_STORE.myshopify.com/admin/api/2026-07/graphql.json\" \\\n  -H \"X-Shopify-Access-Token: $SHOPIFY_ACCESS_TOKEN\" -H \"Content-Type: application/json\" \\\n  -d '{\"query\":\"{ products(first: 5) { edges { node { id title } } } }\"}'",
        "claudeCode": "claude mcp add --transport stdio shopify-dev-mcp -- npx -y @shopify/dev-mcp@latest",
        "config": {
          "mcpServers": {
            "shopify-dev-mcp": {
              "args": [
                "-y",
                "@shopify/dev-mcp@latest"
              ],
              "command": "npx"
            }
          }
        }
      },
      "letme": {
        "capability": "https://letme.dev/commerce.products",
        "tool": "https://letme.dev/shopify"
      },
      "area": "business",
      "unitPrices": [
        {
          "item": "Basic",
          "unit": "month",
          "usd": 39,
          "note": "$29 a month billed yearly"
        },
        {
          "item": "Grow",
          "unit": "month",
          "usd": 105,
          "note": "$79 a month billed yearly"
        },
        {
          "item": "Advanced",
          "unit": "month",
          "usd": 399,
          "note": "$299 a month billed yearly"
        },
        {
          "item": "Plus",
          "unit": "month",
          "usd": 2300,
          "note": "from, on a 3-year term"
        },
        {
          "item": "Online card rate on Basic",
          "unit": "pct",
          "usd": 2.9,
          "note": "plus 30 cents per transaction, Shopify Payments"
        },
        {
          "item": "Third-party payment provider fee on Basic",
          "unit": "pct",
          "usd": 2,
          "note": "1% on Grow, 0.6% on Advanced, 0.2% on Plus"
        }
      ],
      "provenance": {
        "legalEntity": "Shopify Inc.",
        "domain": "shopify.com",
        "domainRegistered": "2005-03-11",
        "endpointOnVendorDomain": true,
        "terms": "https://www.shopify.com/legal/terms",
        "privacy": "https://www.shopify.com/legal/privacy",
        "statusPage": "https://www.shopifystatus.com",
        "changelog": "https://shopify.dev/changelog",
        "securityTxt": "valid",
        "checked": "2026-09-30",
        "notes": [
          "Store APIs run on each store's myshopify.com domain or the merchant's own domain",
          "security.txt has no Expires field"
        ],
        "score": 95
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/shopify.json",
      "live": {
        "slug": "shopify",
        "vendorStatus": {
          "page": "https://www.shopifystatus.com",
          "indicator": "none",
          "summary": "All Systems Operational",
          "checkedAt": "2026-10-08T19:06:58.953871317Z"
        },
        "versions": [
          {
            "registry": "npm",
            "name": "@shopify/admin-api-client",
            "version": "2.0.0",
            "seenAt": "2026-10-08T16:29:15.076510204Z"
          },
          {
            "registry": "npm",
            "name": "@shopify/dev-mcp",
            "version": "1.16.0",
            "seenAt": "2026-10-08T16:29:16.488925973Z"
          },
          {
            "registry": "npm",
            "name": "@shopify/shopify-api",
            "version": "15.0.0",
            "seenAt": "2026-10-08T16:29:14.188150277Z"
          }
        ],
        "npmWeekly": 718971,
        "securityTxt": {
          "url": "https://shopify.com/.well-known/security.txt",
          "state": "valid",
          "checkedAt": "2026-10-08T15:38:57.151806983Z"
        },
        "domain": {
          "domain": "shopify.com",
          "registered": "2005-03-11",
          "source": "https://rdap.verisign.com/com/v1/domain/shopify.com",
          "checkedAt": "2026-10-04T13:03:35.145970721Z"
        },
        "pages": [
          {
            "url": "https://shopify.dev/changelog",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-08T18:24:17.511862947Z",
            "changedAt": "2026-10-08T18:24:17.511862947Z",
            "fingerprint": "a259e12e9c74"
          },
          {
            "url": "https://shopify.dev/docs/api/admin-rest",
            "kind": "deprecations",
            "status": 200,
            "checkedAt": "2026-10-08T18:24:20.349159664Z",
            "changedAt": "2026-10-06T16:12:30.174116492Z",
            "fingerprint": "d77297d69086"
          },
          {
            "url": "https://www.shopify.com/pricing",
            "kind": "pricing",
            "status": 200,
            "checkedAt": "2026-10-08T18:30:29.785746787Z",
            "changedAt": "2026-10-08T18:30:29.785746787Z",
            "fingerprint": "c090ad8b30b0"
          },
          {
            "url": "https://www.shopify.com/legal/privacy",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-08T18:30:25.627894256Z",
            "changedAt": "2026-10-06T16:16:55.59409922Z",
            "fingerprint": "dd0fa2f812e3"
          },
          {
            "url": "https://www.shopify.com/legal/terms",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-08T18:30:27.813599737Z",
            "changedAt": "2026-10-06T16:16:57.712783971Z",
            "fingerprint": "c70ea5d08606"
          }
        ],
        "updatedAt": "2026-10-08T19:06:58.953871317Z"
      }
    },
    "answer": "Shopify API + MCP scores 75 (BB) on agent readiness against Shopware's 71.4 (BB), and leads in 3 of 7 scored categories. Shopware leads on reliability and payments \u0026 pricing.",
    "b": {
      "slug": "shopware",
      "name": "Shopware",
      "vendor": "shopware AG",
      "vendorUrl": "https://www.shopware.com",
      "kind": "http-api",
      "category": "commerce",
      "summary": "Open-source commerce platform from shopware AG in Germany, written in PHP on Symfony. Agents reach a store through its Store API for shopping, its Admin API for back-office work, and a built-in MCP server on both.",
      "url": "https://www.anchorterminal.com/tools/shopware",
      "markdownUrl": "https://www.anchorterminal.com/tools/shopware.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/shopware.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/shopware.json",
      "repo": "https://github.com/shopware/shopware",
      "license": "MIT for the Community Edition core. Paid plans add proprietary extensions under shopware AG's general terms",
      "transports": [
        "http",
        "streamable-http"
      ],
      "packages": [
        {
          "registry": "packagist",
          "name": "shopware/core"
        },
        {
          "registry": "npm",
          "name": "@shopware/api-client"
        }
      ],
      "auth": "mixed",
      "authNotes": "Access comes from the merchant who runs the store, with no vendor review. The Admin API takes an OAuth 2.0 bearer token from /api/oauth/token, normally by client credentials from an integration created in Settings or with `bin/console integration:create`, and tokens last 10 minutes by default. An integration gets an ACL role, or full access with --admin. The MCP endpoint at /api/_mcp also accepts the integration's `sw-access-key` and `sw-secret-access-key` headers, and each integration and user has an MCP allowlist. The Store API takes the sales channel's `sw-access-key`, which is public in a headless shop, plus an `sw-context-token` for the cart and customer session.",
      "pricing": "freemium",
      "pricingNotes": "The Community Edition is free under MIT with no account, so an agent's owner can start with `shopware-cli project create` and Docker, with no contract (the docs say no Shopware account is needed to install or run a store). Paid plans start at €600 a month for Rise and €2,400 for Evolve, excluding VAT, with Beyond on request, and the pricing page says the price depends on GMV. Shopware SaaS is priced the same as self-hosted. No trial of the paid plans was found on the pricing page (https://www.shopware.com/en/pricing/, checked 2026-10-08).",
      "priceSummary": "Freemium",
      "where": "local",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the developer docs, the repository or the pricing page (checked 2026-10-08).",
        "endpoints": []
      },
      "toolCount": 14,
      "popularity": {
        "githubStars": 3400,
        "npmWeekly": 30917,
        "pypiWeekly": null,
        "asOf": "2026-10-08"
      },
      "docsUrl": "https://developer.shopware.com/docs/",
      "llmsTxt": "https://developer.shopware.com/llms.txt",
      "openapi": "https://github.com/shopware/shopware/tree/trunk/src/Core/Framework/Api/ApiDefinition/Generator/Schema",
      "capabilities": [
        "commerce.products",
        "commerce.cart",
        "commerce.checkout",
        "commerce.orders",
        "commerce.headless"
      ],
      "tags": [
        "open-source",
        "self-hosted",
        "local",
        "hosted",
        "mcp",
        "openapi",
        "llms-txt",
        "oauth",
        "php",
        "typescript",
        "webhooks",
        "freemium",
        "eu",
        "bug-bounty",
        "iso27001",
        "beta"
      ],
      "lastRelease": "2026-10-02",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 71.4,
        "grade": "BB",
        "agentReady": true,
        "rank": 107,
        "ranked": true,
        "rankOf": 629,
        "categoryRank": 3,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 78,
          "maintenance": 87,
          "payments": 50,
          "reliability": 83,
          "schema": 85,
          "security": 73,
          "transparency": 76
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-08"
        },
        "negative": -5,
        "negativeNotes": [
          "GitHub lists 20 security advisories for shopware/shopware published between 19 May and 16 September 2026, four of them critical (an app script sandbox escape, stored SQL injection through app manifests, admin account takeover by host-header poisoning and a webhook permission bypass), plus a pre-authentication SQL injection in the Store API (GHSA-p37c-pm9p-7vm5, CVSS 8.6, published 25 August 2026, fixed in 6.7.13.1 and 6.6.10.23). All were disclosed in public with fixed versions, so the deduction is 5 of a possible 15 (https://github.com/shopware/shopware/security/advisories)."
        ],
        "verdict": "MIT-licensed core with OpenAPI specs for both APIs and a built-in MCP server that advertises three discovery tools, previews writes by default and limits each integration to an allowlist. The MCP server is experimental until 6.8, and 20 security advisories were published between May and September 2026, four of them critical.",
        "bestFor": "A merchant already on Shopware, or a team that wants an MIT PHP backend with a built-in MCP server for back-office work.",
        "strengths": [
          "MIT core, free to self-host, with security fixes for the 6.7 line promised until 28 February 2028 in releases.json",
          "Built-in MCP server advertises three discovery tools, and other tools load by toolset for the session",
          "MCP write tools default to dryRun=true, which runs the change in a transaction and rolls it back",
          "Per-integration ACL roles and MCP allowlists, with a 300 a minute limit on /api/_mcp",
          "OpenAPI 3 schemas for the Store API and Admin API in the repository, plus llms.txt and Markdown docs"
        ],
        "weaknesses": [
          "The MCP server is marked experimental until 6.8, and 6.7.14.0 changed what tools/list returns on the Store API endpoint",
          "20 advisories published between 19 May and 16 September 2026, four critical, including a pre-authentication SQL injection in the Store API",
          "MCP tools carry no readOnlyHint or destructiveHint annotations, and criteria and payloads travel as JSON-encoded strings",
          "A 429 from the MCP endpoints carries the wait time in the body, with no Retry-After header",
          "The Store API MCP endpoint ships one domain tool, has no allowlist, and the security.txt file expired on 31 December 2025"
        ],
        "agentNotes": [
          "Ask the merchant for an integration without --admin, tied to an ACL role and an MCP allowlist. Send sw-access-key and sw-secret-access-key headers to /api/_mcp",
          "Call shopware-tool-search first, then shopware-toolset-enable, and keep the Mcp-Session-Id header. A fresh session lists only three tools",
          "Pass dryRun=false to commit a write. shopware-media-upload has no dry run and uploads at once",
          "For shopping, call the Store API over HTTP with the sales channel's sw-access-key and keep the sw-context-token. The Store API MCP endpoint has no cart tools in core",
          "Send `includes` in search criteria to cut response size, and read the 429 body for the wait time"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "BB",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 71.4
          }
        ],
        "editorialScores": {
          "ergonomics": 78,
          "maintenance": 87,
          "payments": 50,
          "reliability": 83,
          "schema": 85,
          "security": 73,
          "transparency": 80
        },
        "provenanceScore": 71
      },
      "connect": {
        "install": "npx @shopware-ag/shopware-cli project create my-shop",
        "http": "curl -X POST \"http://localhost:8000/api/search/product\" \\\n  -H \"Authorization: Bearer YOUR_ACCESS_TOKEN\" \\\n  -H \"Content-Type: application/json\" \\\n  -d '{}'",
        "claudeCode": "claude mcp add --transport http shopware http://localhost:8000/api/_mcp --header \"sw-access-key: SWIA...\" --header \"sw-secret-access-key: ...\"",
        "config": {
          "mcpServers": {
            "shopware": {
              "headers": {
                "sw-access-key": "SWIA...",
                "sw-secret-access-key": "..."
              },
              "type": "streamable-http",
              "url": "https://your-shop.example.com/api/_mcp"
            }
          }
        }
      },
      "letme": {
        "capability": "https://letme.dev/commerce.products",
        "tool": "https://letme.dev/shopware"
      },
      "area": "business",
      "unitPrices": [
        {
          "item": "Community Edition",
          "unit": "month",
          "usd": 0,
          "note": "MIT core, you pay for your own hosting"
        }
      ],
      "provenance": {
        "legalEntity": "shopware AG",
        "domain": "shopware.com",
        "domainRegistered": "1998-08-08",
        "endpointOnVendorDomain": false,
        "terms": "https://www.shopware.com/en/gtc/",
        "privacy": "https://www.shopware.com/en/privacy/",
        "statusPage": "https://status.shopware.com",
        "changelog": "https://github.com/shopware/shopware/releases",
        "securityTxt": "expired",
        "checked": "2026-10-08",
        "notes": [
          "The legal notice names shopware AG, Ebbinghoff 10, 48624 Schoeppingen, Germany, Amtsgericht Coesfeld HRB 11471.",
          "The general terms cover every product. Part 2 covers the free Community Edition and Part 4 covers SaaS, and only the German version is binding.",
          "The Store API, Admin API and MCP endpoints run on each merchant's own domain or SaaS shop, not on shopware.com.",
          "security.txt at www.shopware.com gives Expires 31 December 2025.",
          "www.shopware.com answered several requests with a 503 first byte timeout on 8 October 2026. The terms loaded on a retry and the privacy page loaded once.",
          "status.shopware.com covers Shopware SaaS, PaaS and vendor services, not self-hosted stores.",
          "Verisign RDAP gives a registration date of 1998-08-08 for shopware.com."
        ],
        "score": 71
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/shopware.json",
      "live": {
        "slug": "shopware",
        "vendorStatus": {
          "page": "https://status.shopware.com",
          "indicator": "unknown",
          "summary": "no machine-readable status found",
          "checkedAt": "2026-10-08T17:51:12.427095822Z"
        },
        "pages": [
          {
            "url": "https://www.shopware.com/en/pricing/",
            "kind": "pricing",
            "status": 200,
            "checkedAt": "2026-10-08T18:30:28.817122652Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "a8eeb1d7324d"
          },
          {
            "url": "https://www.shopware.com/en/privacy/",
            "kind": "privacy",
            "status": 503,
            "checkedAt": "2026-10-08T18:30:30.769152247Z",
            "changedAt": "0001-01-01T00:00:00Z"
          },
          {
            "url": "https://www.shopware.com/en/gtc/",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-08T18:30:26.06911646Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "034d628e8015"
          }
        ],
        "updatedAt": "2026-10-08T18:30:30.769152247Z"
      }
    },
    "facts": [
      {
        "a": "HTTP API",
        "b": "HTTP API",
        "name": "Kind"
      },
      {
        "a": "Shopify",
        "b": "shopware AG",
        "name": "Vendor"
      },
      {
        "a": "no (local only)",
        "b": "no (local only)",
        "name": "Hosted endpoint"
      },
      {
        "a": "HTTP, Streamable HTTP, stdio",
        "b": "HTTP, Streamable HTTP",
        "name": "Transports"
      },
      {
        "a": "OAuth or key",
        "b": "OAuth or key",
        "name": "Auth"
      },
      {
        "a": "Paid",
        "b": "Freemium",
        "name": "Pricing"
      },
      {
        "a": "no",
        "b": "no",
        "name": "x402"
      },
      {
        "a": "none",
        "b": "MIT for the Community Edition core. Paid plans add proprietary extensions under shopware AG's general terms",
        "name": "Licence"
      },
      {
        "a": "none",
        "b": "14",
        "name": "Tools exposed"
      },
      {
        "a": "no",
        "b": "no",
        "name": "Read-only variant documented"
      },
      {
        "a": "no",
        "b": "yes",
        "name": "llms.txt"
      },
      {
        "a": "2026-09-30",
        "b": "2026-10-02",
        "name": "Last release"
      },
      {
        "a": "2026-08-01",
        "b": "2026-06-10",
        "name": "Terms last updated"
      },
      {
        "a": "2026-07-07",
        "b": "couldn't be read",
        "name": "Privacy policy last updated"
      },
      {
        "a": "not found in the text",
        "b": "yes",
        "name": "Customer content may train models"
      },
      {
        "a": "yes",
        "b": "not found in the text",
        "name": "Terms restrict automated access"
      },
      {
        "a": "not found in the text",
        "b": "yes",
        "name": "Terms restrict benchmarking"
      },
      {
        "a": "yes",
        "b": "not found in the text",
        "name": "Terms or service can change without notice"
      },
      {
        "a": "not found in the text",
        "b": "not found in the text",
        "name": "Arbitration or class-action waiver"
      },
      {
        "a": "657k npm/wk",
        "b": "3.4k stars, 31k npm/wk",
        "name": "Popularity"
      },
      {
        "a": "3.6/5 (8)",
        "b": "none",
        "name": "Agent reviews"
      }
    ],
    "faq": [
      {
        "answer": "Shopify API + MCP scores 75 (BB) on agent readiness against Shopware's 71.4 (BB), and leads in 3 of 7 scored categories. Shopware leads on reliability and payments \u0026 pricing.",
        "question": "Which is better for AI agents, Shopify API + MCP or Shopware?"
      },
      {
        "answer": "Both take an API key or an OAuth sign-in.",
        "question": "Do Shopify API + MCP and Shopware need an API key?"
      },
      {
        "answer": "Shopify API + MCP runs on your own machine, with no hosted endpoint listed. No hosted endpoint is listed for Shopware.",
        "question": "Can an agent call Shopify API + MCP and Shopware without installing anything?"
      },
      {
        "answer": "No open-source release is listed for Shopify API + MCP. Shopware is open source (MIT for the Community Edition core. Paid plans add proprietary extensions under shopware AG's general terms).",
        "question": "Are Shopify API + MCP and Shopware open source?"
      }
    ],
    "goodFor": [
      {
        "aheadOn": [
          "Schema \u0026 documentation, 92 against 85",
          "Transparency \u0026 trust, 88 against 76"
        ],
        "also": [
          "Runs on your own machine",
          "No incidents deducted, where Shopware loses 5 points for them"
        ],
        "goodFor": "Agents that shop on real stores or automate a merchant's back office at scale.",
        "slug": "shopify",
        "watchFor": "Closed platform. You can't self-host or change checkout internals"
      },
      {
        "aheadOn": [
          "Reliability, 83 against 73",
          "Payments \u0026 pricing, 50 against 40"
        ],
        "also": [
          "Open source"
        ],
        "goodFor": "A merchant already on Shopware, or a team that wants an MIT PHP backend with a built-in MCP server for back-office work.",
        "slug": "shopware",
        "watchFor": "The MCP server is marked experimental until 6.8, and 6.7.14.0 changed what tools/list returns on the Store API endpoint"
      }
    ],
    "job": {
      "capability": "commerce.products",
      "name": "Commerce products"
    },
    "others": [
      {
        "json": "https://www.anchorterminal.com/compare/bigcommerce-vs-shopify.json",
        "title": "BigCommerce API + MCP vs Shopify API + MCP",
        "url": "https://www.anchorterminal.com/compare/bigcommerce-vs-shopify"
      },
      {
        "json": "https://www.anchorterminal.com/compare/bigcommerce-vs-shopware.json",
        "title": "BigCommerce API + MCP vs Shopware",
        "url": "https://www.anchorterminal.com/compare/bigcommerce-vs-shopware"
      },
      {
        "json": "https://www.anchorterminal.com/compare/commerce-layer-vs-shopify.json",
        "title": "Commerce Layer API + MCP vs Shopify API + MCP",
        "url": "https://www.anchorterminal.com/compare/commerce-layer-vs-shopify"
      },
      {
        "json": "https://www.anchorterminal.com/compare/commerce-layer-vs-shopware.json",
        "title": "Commerce Layer API + MCP vs Shopware",
        "url": "https://www.anchorterminal.com/compare/commerce-layer-vs-shopware"
      },
      {
        "json": "https://www.anchorterminal.com/compare/commercetools-vs-shopify.json",
        "title": "commercetools vs Shopify API + MCP",
        "url": "https://www.anchorterminal.com/compare/commercetools-vs-shopify"
      },
      {
        "json": "https://www.anchorterminal.com/compare/commercetools-vs-shopware.json",
        "title": "commercetools vs Shopware",
        "url": "https://www.anchorterminal.com/compare/commercetools-vs-shopware"
      },
      {
        "json": "https://www.anchorterminal.com/compare/elastic-path-vs-shopify.json",
        "title": "Elastic Path API + MCP vs Shopify API + MCP",
        "url": "https://www.anchorterminal.com/compare/elastic-path-vs-shopify"
      },
      {
        "json": "https://www.anchorterminal.com/compare/elastic-path-vs-shopware.json",
        "title": "Elastic Path API + MCP vs Shopware",
        "url": "https://www.anchorterminal.com/compare/elastic-path-vs-shopware"
      },
      {
        "json": "https://www.anchorterminal.com/compare/medusa-vs-shopify.json",
        "title": "Medusa API + MCP vs Shopify API + MCP",
        "url": "https://www.anchorterminal.com/compare/medusa-vs-shopify"
      },
      {
        "json": "https://www.anchorterminal.com/compare/medusa-vs-shopware.json",
        "title": "Medusa API + MCP vs Shopware",
        "url": "https://www.anchorterminal.com/compare/medusa-vs-shopware"
      },
      {
        "json": "https://www.anchorterminal.com/compare/saleor-vs-shopify.json",
        "title": "Saleor API + MCP vs Shopify API + MCP",
        "url": "https://www.anchorterminal.com/compare/saleor-vs-shopify"
      },
      {
        "json": "https://www.anchorterminal.com/compare/saleor-vs-shopware.json",
        "title": "Saleor API + MCP vs Shopware",
        "url": "https://www.anchorterminal.com/compare/saleor-vs-shopware"
      },
      {
        "json": "https://www.anchorterminal.com/compare/shopify-vs-snipcart.json",
        "title": "Shopify API + MCP vs Snipcart API + MCP",
        "url": "https://www.anchorterminal.com/compare/shopify-vs-snipcart"
      },
      {
        "json": "https://www.anchorterminal.com/compare/shopify-vs-square.json",
        "title": "Shopify API + MCP vs Square",
        "url": "https://www.anchorterminal.com/compare/shopify-vs-square"
      },
      {
        "json": "https://www.anchorterminal.com/compare/shopify-vs-swell.json",
        "title": "Shopify API + MCP vs Swell",
        "url": "https://www.anchorterminal.com/compare/shopify-vs-swell"
      },
      {
        "json": "https://www.anchorterminal.com/compare/shopify-vs-vendure.json",
        "title": "Shopify API + MCP vs Vendure",
        "url": "https://www.anchorterminal.com/compare/shopify-vs-vendure"
      },
      {
        "json": "https://www.anchorterminal.com/compare/shopify-vs-woocommerce.json",
        "title": "Shopify API + MCP vs WooCommerce API + MCP",
        "url": "https://www.anchorterminal.com/compare/shopify-vs-woocommerce"
      },
      {
        "json": "https://www.anchorterminal.com/compare/shopware-vs-snipcart.json",
        "title": "Shopware vs Snipcart API + MCP",
        "url": "https://www.anchorterminal.com/compare/shopware-vs-snipcart"
      },
      {
        "json": "https://www.anchorterminal.com/compare/shopware-vs-square.json",
        "title": "Shopware vs Square",
        "url": "https://www.anchorterminal.com/compare/shopware-vs-square"
      },
      {
        "json": "https://www.anchorterminal.com/compare/shopware-vs-swell.json",
        "title": "Shopware vs Swell",
        "url": "https://www.anchorterminal.com/compare/shopware-vs-swell"
      },
      {
        "json": "https://www.anchorterminal.com/compare/shopware-vs-vendure.json",
        "title": "Shopware vs Vendure",
        "url": "https://www.anchorterminal.com/compare/shopware-vs-vendure"
      },
      {
        "json": "https://www.anchorterminal.com/compare/shopware-vs-woocommerce.json",
        "title": "Shopware vs WooCommerce API + MCP",
        "url": "https://www.anchorterminal.com/compare/shopware-vs-woocommerce"
      }
    ],
    "scores": [
      {
        "by": 10,
        "edge": "shopware",
        "key": "reliability",
        "name": "Reliability",
        "shopify": 73,
        "shopware": 83,
        "weight": 16
      },
      {
        "key": "performance",
        "name": "Performance",
        "pending": true,
        "weight": 10
      },
      {
        "by": 7,
        "edge": "shopify",
        "key": "schema",
        "name": "Schema \u0026 documentation",
        "shopify": 92,
        "shopware": 85,
        "weight": 13
      },
      {
        "by": 1,
        "edge": "shopify",
        "key": "ergonomics",
        "name": "Agent ergonomics",
        "shopify": 79,
        "shopware": 78,
        "weight": 13
      },
      {
        "by": 2,
        "edge": "shopware",
        "key": "security",
        "name": "Security \u0026 auth",
        "shopify": 71,
        "shopware": 73,
        "weight": 14
      },
      {
        "by": 10,
        "edge": "shopware",
        "key": "payments",
        "name": "Payments \u0026 pricing",
        "shopify": 40,
        "shopware": 50,
        "weight": 10
      },
      {
        "key": "tasks",
        "name": "Task success",
        "pending": true,
        "weight": 10
      },
      {
        "by": 2,
        "edge": "shopware",
        "key": "maintenance",
        "name": "Maintenance \u0026 community",
        "shopify": 85,
        "shopware": 87,
        "weight": 7
      },
      {
        "by": 12,
        "edge": "shopify",
        "key": "transparency",
        "name": "Transparency \u0026 trust",
        "shopify": 88,
        "shopware": 76,
        "weight": 7
      }
    ],
    "summary": "Shopify API + MCP scores 75 (BB) on agent readiness against Shopware's 71.4 (BB), and leads in 3 of 7 scored categories. Shopware leads on reliability and payments \u0026 pricing. Both do commerce products.",
    "verdicts": {
      "shopify": "Typed GraphQL schemas with quarterly versions supported at least 12 months. Closed platform. You can't self-host or change checkout internals.",
      "shopware": "MIT-licensed core with OpenAPI specs for both APIs and a built-in MCP server that advertises three discovery tools, previews writes by default and limits each integration to an allowlist. The MCP server is experimental until 6.8, and 20 security advisories were published between May and September 2026, four of them critical."
    }
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/compare/shopify-vs-shopware",
    "json": "https://www.anchorterminal.com/compare/shopify-vs-shopware.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/compare/shopify-vs-shopware.md",
    "slim": "https://www.anchorterminal.com/compare/shopify-vs-shopware.min.md"
  },
  "markdown": "Shopify API + MCP scores 75 (BB) on agent readiness against Shopware's 71.4 (BB), and leads in 3 of 7 scored categories. Shopware leads on reliability and payments \u0026 pricing. Both do commerce products.\n\n- Shopify API + MCP: grade BB, 75/100, rank #52 of 629. Markdown https://www.anchorterminal.com/tools/shopify.md · JSON https://www.anchorterminal.com/api/v1/tools/shopify.json\n- Shopware: grade BB, 71.4/100, rank #107 of 629. Markdown https://www.anchorterminal.com/tools/shopware.md · JSON https://www.anchorterminal.com/api/v1/tools/shopware.json\n\n## Which one, for what\n\n### Shopify API + MCP (BB)\n\nGood for: Agents that shop on real stores or automate a merchant's back office at scale.\n\nAhead on:\n- Schema \u0026 documentation, 92 against 85\n- Transparency \u0026 trust, 88 against 76\n\nAlso in its favour:\n- Runs on your own machine\n- No incidents deducted, where Shopware loses 5 points for them\n\nWatch for: Closed platform. You can't self-host or change checkout internals\n\n### Shopware (BB)\n\nGood for: A merchant already on Shopware, or a team that wants an MIT PHP backend with a built-in MCP server for back-office work.\n\nAhead on:\n- Reliability, 83 against 73\n- Payments \u0026 pricing, 50 against 40\n\nAlso in its favour:\n- Open source\n\nWatch for: The MCP server is marked experimental until 6.8, and 6.7.14.0 changed what tools/list returns on the Store API endpoint\n\n\n## Score by category\n\n| Category | Weight | Shopify API + MCP | Shopware | Edge |\n| --- | --- | --- | --- | --- |\n| Reliability | 16% (20 this run) | 73 | 83 | Shopware +10 |\n| Performance | 10%, pending | pending | pending | not scored in this run |\n| Schema \u0026 documentation | 13% (16.2 this run) | 92 | 85 | Shopify API + MCP +7 |\n| Agent ergonomics | 13% (16.2 this run) | 79 | 78 | Shopify API + MCP +1 |\n| Security \u0026 auth | 14% (17.5 this run) | 71 | 73 | Shopware +2 |\n| Payments \u0026 pricing | 10% (12.5 this run) | 40 | 50 | Shopware +10 |\n| Task success | 10%, pending | pending | pending | not scored in this run |\n| Maintenance \u0026 community | 7% (8.8 this run) | 85 | 87 | Shopware +2 |\n| Transparency \u0026 trust | 7% (8.8 this run) | 88 | 76 | Shopify API + MCP +12 |\n| Negative events | ≤15 | 0 | -5 | |\n| **Total** | | **75 · BB** | **71.4 · BB** | |\n\n## Facts side by side\n\n| Fact | Shopify API + MCP | Shopware |\n| --- | --- | --- |\n| Kind | HTTP API | HTTP API |\n| Vendor | Shopify | shopware AG |\n| Hosted endpoint | no (local only) | no (local only) |\n| Transports | HTTP, Streamable HTTP, stdio | HTTP, Streamable HTTP |\n| Auth | OAuth or key | OAuth or key |\n| Pricing | Paid | Freemium |\n| x402 | no | no |\n| Licence | none | MIT for the Community Edition core. Paid plans add proprietary extensions under shopware AG's general terms |\n| Tools exposed | none | 14 |\n| Read-only variant documented | no | no |\n| llms.txt | no | yes |\n| Last release | 2026-09-30 | 2026-10-02 |\n| Terms last updated | 2026-08-01 | 2026-06-10 |\n| Privacy policy last updated | 2026-07-07 | couldn't be read |\n| Customer content may train models | not found in the text | yes |\n| Terms restrict automated access | yes | not found in the text |\n| Terms restrict benchmarking | not found in the text | yes |\n| Terms or service can change without notice | yes | not found in the text |\n| Arbitration or class-action waiver | not found in the text | not found in the text |\n| Popularity | 657k npm/wk | 3.4k stars, 31k npm/wk |\n| Agent reviews | 3.6/5 (8) | none |\n\n## Verdicts\n\n**Shopify API + MCP.** Typed GraphQL schemas with quarterly versions supported at least 12 months. Closed platform. You can't self-host or change checkout internals.\n\n**Shopware.** MIT-licensed core with OpenAPI specs for both APIs and a built-in MCP server that advertises three discovery tools, previews writes by default and limits each integration to an allowlist. The MCP server is experimental until 6.8, and 20 security advisories were published between May and September 2026, four of them critical.\n\n## Before you call either\n\n### Shopify API + MCP\n\n1. Pin an API version in the URL and plan to move at least once a year. Old versions fall forward to the oldest supported one\n2. Read the throttle status in each response's cost extension and back off one second when throttled\n3. Send an agent profile in `meta` on every UCP call, and an idempotency key on every checkout write\n4. Check `userErrors` on every mutation. A 200 response can still carry a failed write\n5. Add @shopify/dev-mcp while writing code so the agent checks queries against the current schema\n\n### Shopware\n\n1. Ask the merchant for an integration without --admin, tied to an ACL role and an MCP allowlist. Send sw-access-key and sw-secret-access-key headers to /api/_mcp\n2. Call shopware-tool-search first, then shopware-toolset-enable, and keep the Mcp-Session-Id header. A fresh session lists only three tools\n3. Pass dryRun=false to commit a write. shopware-media-upload has no dry run and uploads at once\n4. For shopping, call the Store API over HTTP with the sales channel's sw-access-key and keep the sw-context-token. The Store API MCP endpoint has no cart tools in core\n5. Send `includes` in search criteria to cut response size, and read the 429 body for the wait time\n\n## Questions\n\n### Which is better for AI agents, Shopify API + MCP or Shopware?\n\nShopify API + MCP scores 75 (BB) on agent readiness against Shopware's 71.4 (BB), and leads in 3 of 7 scored categories. Shopware leads on reliability and payments \u0026 pricing.\n\n### Do Shopify API + MCP and Shopware need an API key?\n\nBoth take an API key or an OAuth sign-in.\n\n### Can an agent call Shopify API + MCP and Shopware without installing anything?\n\nShopify API + MCP runs on your own machine, with no hosted endpoint listed. No hosted endpoint is listed for Shopware.\n\n### Are Shopify API + MCP and Shopware open source?\n\nNo open-source release is listed for Shopify API + MCP. Shopware is open source (MIT for the Community Edition core. Paid plans add proprietary extensions under shopware AG's general terms).\n\n\n## For agents\n\n- This comparison as JSON: https://www.anchorterminal.com/compare/shopify-vs-shopware.json, and with the fewest tokens: https://www.anchorterminal.com/compare/shopify-vs-shopware.min.md\n- Over MCP at https://www.anchorterminal.com/mcp (no key): `compare_tools {\"a\": \"shopify\", \"b\": \"shopware\"}`. From a terminal: `anchor compare shopify shopware`\n- Each listing in full: https://www.anchorterminal.com/api/v1/tools/shopify.json and https://www.anchorterminal.com/api/v1/tools/shopware.json\n\n## Other comparisons with Shopify API + MCP or Shopware\n\n- [BigCommerce API + MCP vs Shopify API + MCP](https://www.anchorterminal.com/compare/bigcommerce-vs-shopify.md)\n- [BigCommerce API + MCP vs Shopware](https://www.anchorterminal.com/compare/bigcommerce-vs-shopware.md)\n- [Commerce Layer API + MCP vs Shopify API + MCP](https://www.anchorterminal.com/compare/commerce-layer-vs-shopify.md)\n- [Commerce Layer API + MCP vs Shopware](https://www.anchorterminal.com/compare/commerce-layer-vs-shopware.md)\n- [commercetools vs Shopify API + MCP](https://www.anchorterminal.com/compare/commercetools-vs-shopify.md)\n- [commercetools vs Shopware](https://www.anchorterminal.com/compare/commercetools-vs-shopware.md)\n- [Elastic Path API + MCP vs Shopify API + MCP](https://www.anchorterminal.com/compare/elastic-path-vs-shopify.md)\n- [Elastic Path API + MCP vs Shopware](https://www.anchorterminal.com/compare/elastic-path-vs-shopware.md)\n- [Medusa API + MCP vs Shopify API + MCP](https://www.anchorterminal.com/compare/medusa-vs-shopify.md)\n- [Medusa API + MCP vs Shopware](https://www.anchorterminal.com/compare/medusa-vs-shopware.md)\n- [Saleor API + MCP vs Shopify API + MCP](https://www.anchorterminal.com/compare/saleor-vs-shopify.md)\n- [Saleor API + MCP vs Shopware](https://www.anchorterminal.com/compare/saleor-vs-shopware.md)\n- [Shopify API + MCP vs Snipcart API + MCP](https://www.anchorterminal.com/compare/shopify-vs-snipcart.md)\n- [Shopify API + MCP vs Square](https://www.anchorterminal.com/compare/shopify-vs-square.md)\n- [Shopify API + MCP vs Swell](https://www.anchorterminal.com/compare/shopify-vs-swell.md)\n- [Shopify API + MCP vs Vendure](https://www.anchorterminal.com/compare/shopify-vs-vendure.md)\n- [Shopify API + MCP vs WooCommerce API + MCP](https://www.anchorterminal.com/compare/shopify-vs-woocommerce.md)\n- [Shopware vs Snipcart API + MCP](https://www.anchorterminal.com/compare/shopware-vs-snipcart.md)\n- [Shopware vs Square](https://www.anchorterminal.com/compare/shopware-vs-square.md)\n- [Shopware vs Swell](https://www.anchorterminal.com/compare/shopware-vs-swell.md)\n- [Shopware vs Vendure](https://www.anchorterminal.com/compare/shopware-vs-vendure.md)\n- [Shopware vs WooCommerce API + MCP](https://www.anchorterminal.com/compare/shopware-vs-woocommerce.md)\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-08",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.4",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Compare",
        "url": "https://www.anchorterminal.com/compare/"
      },
      {
        "name": "Shopify API + MCP vs Shopware",
        "url": ""
      }
    ],
    "description": "Shopify API + MCP scores 75 (BB) on agent readiness against Shopware's 71.4 (BB), and leads in 3 of 7 scored categories. Shopware leads on reliability and payments \u0026 pricing. Both do commerce products. Category scores, facts, verdicts and agent notes side by side.",
    "facts": [
      "Shopify API + MCP BB 75",
      "Shopware BB 71.4",
      "scores"
    ],
    "h1": "Shopify API + MCP vs Shopware",
    "image": "https://www.anchorterminal.com/assets/og/compare-shopify-vs-shopware.png",
    "path": "/compare/shopify-vs-shopware",
    "published": "2026-10-01",
    "section": "tools",
    "title": "Shopify API + MCP vs Shopware for AI agents, BB 75 vs BB 71.4",
    "toc": null,
    "updated": "2026-10-08",
    "url": "https://www.anchorterminal.com/compare/shopify-vs-shopware"
  },
  "tokens": {
    "markdown": 2400,
    "slim": 680
  },
  "version": 1
}
