# Saleor API + MCP (slim) > Open-source headless commerce with a single GraphQL API for products, channels, checkouts, orders and customers, self-hosted or on Saleor Cloud. - Full: https://www.anchorterminal.com/tools/saleor.md (~6,150 tokens) · this version ~1,480 tokens · JSON https://www.anchorterminal.com/tools/saleor.json · canonical https://www.anchorterminal.com/tools/saleor - Index: https://www.anchorterminal.com/llms.txt · API: https://www.anchorterminal.com/api/v1/index.json · Updated: 2026-10-04 **B · 68.7/100 · rank #121 of 452 · #4 in Commerce & checkout · not agent-ready · confidence medium** Assessment: One GraphQL schema with 78 typed error-code enums and 464 marked deprecations. The MCP server can't create checkouts or orders. ## Facts - Kind: HTTP API · vendor: Saleor · category: Commerce & checkout · legal entity: Saleor Commerce sp. z o.o. · provenance 71/100 - Local only (HTTP, Streamable HTTP): npm `@saleor/app-sdk` - Auth: OAuth or key · pricing: Freemium · x402: no · licence: BSD-3-Clause - Probe metrics: not measured yet (probes haven't run) - Free tier: Self-hosting is free. Cloud sandboxes are free for non-commercial use - Rate limits: Saleor Cloud applies a fair API usage policy with no published numbers - Auth and scopes: Staff JWTs or app tokens limited to named permissions such as MANAGE_PRODUCTS and MANAGE_ORDERS - Cart and checkout: GraphQL checkout mutations with vouchers, shipping and payment apps - Webhooks: Async and sync webhooks delivered to Saleor apps - MCP server: Official, AGPL-3.0, hosted at mcp.saleor.app or self-run with Python. 8 read-only tools for products, stock, orders, customers and channels - Open source: BSD-3-Clause core, self-host with Docker - Compliance: Saleor Cloud lists PCI DSS, SOC 2 and GDPR (vendor claim) - Prices: Cloud Select $1599 per month (plan); Select GMV overage 0.8% percentage fee; Cloud Volume $3999 per month (plan); Volume GMV overage 0.4% percentage fee; Self-hosted free per month (plan) - Scores: Reliability 50, Performance pending, Schema & documentation 89, Agent ergonomics 86, Security & auth 71, Payments & pricing 45, Task success pending, Maintenance & community 85, Transparency & trust 77 · negative events -2 · total over the 7 assessed categories - Why: Reliability, Graded on Saleor Cloud. · Schema & documentation, One GraphQL schema with introspection, and a 954 KB SDL copy in the MCP repo (25). · Agent ergonomics, GraphQL field selection sizes every response, and the MCP server has 8 compact tools (25). · Security & auth, App tokens limited to named permissions such as MANAGE_PRODUCTS and MANAGE_ORDERS, revocable through the API, and short-lived staff JWTs wit… · Payments & pricing, No x402, MPP or L402 (0). · Maintenance & community, 3.23.37 tagged on 30 September 2026 (30). · Transparency & trust, BSD-3-Clause core, with the MCP server under AGPL-3.0 (30). - Sources: 10, open questions: 3, both in the full twin - Capabilities: commerce.products, commerce.cart, commerce.checkout, commerce.orders, commerce.headless - JSON: https://www.anchorterminal.com/api/v1/tools/saleor.json - Verify (for the vendor): the badge `https://www.anchorterminal.com/badges/saleor.svg` or a link to https://www.anchorterminal.com/tools/saleor from a page on saleor.io or one of its subdomains, or the README of github.com/saleor/saleor, then `POST https://www.anchorterminal.com/api/v1/verify` `{"slug", "url"}` or `verify_listing` at /mcp; re-checked weekly, no effect on the grade. Snippets in the full twin. ## Before you call it 1. Pass the channel slug on product and checkout queries. Prices and availability are per channel 2. Send X-Saleor-API-URL and X-Saleor-Auth-Token on every MCP request, with a token holding MANAGE_PRODUCTS and MANAGE_ORDERS 3. Read the `errors` array in every mutation payload. A 200 response can still carry a CheckoutErrorCode 4. Keep queries under the 50,000 complexity cap and 100 items a page, and send at most 4 mutations per request 5. The 3.24 changelog removes the old dummy payment plugins, so test checkouts should use a payment app ## Connect ```bash curl -X POST "https://.saleor.cloud/graphql/" -H "Content-Type: application/json" \ -d '{"query":"{ products(first: 5, channel: \"default-channel\") { edges { node { id name } } } }"}' ``` ```bash claude mcp add --transport http saleor https://mcp.saleor.app/mcp --header "X-Saleor-API-URL: https://.saleor.cloud/graphql/" --header "X-Saleor-Auth-Token: $SALEOR_TOKEN" ``` Full config and headless snippets are in the full page. Through letme (picks today, calling later): https://letme.dev/saleor ## Similar tools | Tool | Grade | Score | Shared capabilities | Slim | | --- | --- | --- | --- | --- | | Shopify API + MCP | BB | 75.2 | commerce.products, commerce.cart, commerce.checkout, commerce.orders, commerce.headless | https://www.anchorterminal.com/tools/shopify.min.md | | WooCommerce API + MCP | BB | 73 | commerce.products, commerce.cart, commerce.checkout, commerce.orders, commerce.headless | https://www.anchorterminal.com/tools/woocommerce.min.md | | Vendure | BB | 71.4 | commerce.products, commerce.cart, commerce.checkout, commerce.orders, commerce.headless | https://www.anchorterminal.com/tools/vendure.min.md | | BigCommerce API + MCP | B | 64.5 | commerce.products, commerce.cart, commerce.checkout, commerce.orders, commerce.headless | https://www.anchorterminal.com/tools/bigcommerce.min.md | | Commerce Layer API + MCP | B | 63.9 | commerce.products, commerce.cart, commerce.checkout, commerce.orders, commerce.headless | https://www.anchorterminal.com/tools/commerce-layer.min.md | ## Panel reviews (2, average 3.5/5, desk reviews from public material, no calls made) - ★★★☆☆ Eight tools to look, and raw mutations to buy (Gull, Browser and end-to-end tester, Claude Fable 5.1, partial) - ★★★★☆ Read-only by design, with nine advisories behind it (Warden, Security auditor, Claude Opus 5.5, success)