1MORE · Agentic Access

1MORE Agentic Access

x-agentic-access generated

1MORE exposes 13 API operations that an AI agent could call, of which 7 are state-changing ‘acting’ operations. This is a recommended x-agentic-access execution contract — the scope, audience, consequence tier, short-lived token constraints, and escalation each action should carry before it is handed to an autonomous agent.

By consequence: 6 read, 6 write, and 1 physical.

1 operation are classed safety-critical and should require human-in-the-loop approval at runtime.

Contracts are classified heuristically from the provider’s OpenAPI and refresh on every APIs.io network build; audience is bound per deployment. The model follows Curity’s Access Intelligence (apidays Munich 2026). Browse every provider’s agent contracts at agentic-access.apis.io.

CompanyConsumer ElectronicsAudioHeadphonesRetailE-CommerceAgentic CommerceUniversal Commerce ProtocolMCPShopify
Operations: 13 Acting: 7 Human-in-the-loop: 1 Method: generated

By consequence

read 6 write 6 physical 1

Source

Agentic Access

1more-agentic-access.yml Raw ↑
generated: '2026-09-05'
method: generated
source: mcp/1more-ucp-tools-list.json (probed tools/list, https://usa.1more.com/api/ucp/mcp) + https://usa.1more.com/agents.md
note: 'A recommended x-agentic-access execution contract for 1MORE''s agent commerce surface, classified
  from the 13 real MCP tools the endpoint published. This is a governance STARTING POINT authored by API
  Evangelist, not a claim 1MORE publishes it. One classification is NOT a heuristic: complete_checkout
  is marked human-in-the-loop required because the store itself says so in its agents.md, and it is the
  only tool that requires an idempotency key. audience is left null to bind per deployment. Derived from
  OpenAPI is impossible here - there is no OpenAPI - so the tool input schemas are the authority for what
  each operation takes.'
surface:
  transport: mcp
  endpoint: https://usa.1more.com/api/ucp/mcp
  auth: none
summary:
  operations: 13
  by_action_class:
    connected: 6
    acting: 7
  by_consequence:
    read: 6
    write: 6
    physical: 1
  human_in_the_loop_required: 1
operations:
- operation: get_checkout
  action_class: connected
  consequence: read
  scope: order:read
  token:
    max_ttl_seconds: 3600
    exchange: false
    purpose_required: false
  escalation:
    human_in_the_loop: not-required
  audit: optional
  audience: null
- operation: create_checkout
  action_class: acting
  consequence: write
  scope: checkout:write
  token:
    max_ttl_seconds: 900
    exchange: false
    purpose_required: false
  escalation:
    human_in_the_loop: not-required
  audit: required
  audience: null
- operation: update_checkout
  action_class: acting
  consequence: write
  scope: checkout:write
  token:
    max_ttl_seconds: 900
    exchange: false
    purpose_required: false
  escalation:
    human_in_the_loop: not-required
  audit: required
  audience: null
- operation: complete_checkout
  action_class: acting
  consequence: physical
  scope: checkout:complete
  token:
    max_ttl_seconds: 300
    exchange: true
    purpose_required: true
  escalation:
    human_in_the_loop: required
    basis: 'Provider-stated, not inferred: https://usa.1more.com/agents.md - "Checkout requires human
      approval. Agents must not complete payment without explicit buyer consent."'
  audit: required
  idempotency:
    required: true
    field: meta.idempotency-key
  audience: null
- operation: cancel_checkout
  action_class: acting
  consequence: write
  scope: checkout:write
  token:
    max_ttl_seconds: 900
    exchange: false
    purpose_required: false
  escalation:
    human_in_the_loop: not-required
  audit: required
  audience: null
- operation: get_cart
  action_class: connected
  consequence: read
  scope: order:read
  token:
    max_ttl_seconds: 3600
    exchange: false
    purpose_required: false
  escalation:
    human_in_the_loop: not-required
  audit: optional
  audience: null
- operation: create_cart
  action_class: acting
  consequence: write
  scope: cart:write
  token:
    max_ttl_seconds: 900
    exchange: false
    purpose_required: false
  escalation:
    human_in_the_loop: not-required
  audit: required
  audience: null
- operation: update_cart
  action_class: acting
  consequence: write
  scope: cart:write
  token:
    max_ttl_seconds: 900
    exchange: false
    purpose_required: false
  escalation:
    human_in_the_loop: not-required
  audit: required
  audience: null
- operation: cancel_cart
  action_class: acting
  consequence: write
  scope: cart:write
  token:
    max_ttl_seconds: 900
    exchange: false
    purpose_required: false
  escalation:
    human_in_the_loop: not-required
  audit: required
  audience: null
- operation: get_order
  action_class: connected
  consequence: read
  scope: order:read
  token:
    max_ttl_seconds: 3600
    exchange: false
    purpose_required: false
  escalation:
    human_in_the_loop: not-required
  audit: optional
  audience: null
- operation: search_catalog
  action_class: connected
  consequence: read
  scope: catalog:read
  token:
    max_ttl_seconds: 3600
    exchange: false
    purpose_required: false
  escalation:
    human_in_the_loop: not-required
  audit: optional
  audience: null
- operation: lookup_catalog
  action_class: connected
  consequence: read
  scope: catalog:read
  token:
    max_ttl_seconds: 3600
    exchange: false
    purpose_required: false
  escalation:
    human_in_the_loop: not-required
  audit: optional
  audience: null
- operation: get_product
  action_class: connected
  consequence: read
  scope: catalog:read
  token:
    max_ttl_seconds: 3600
    exchange: false
    purpose_required: false
  escalation:
    human_in_the_loop: not-required
  audit: optional
  audience: null

Work with this as data

Every access contract here is available over the APIs.io API and to AI agents over MCP. Agentic Access is not yet its own endpoint on the v1 API. Reach it through catalog search and the tag graph, or the MCP server.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for agentic access

3 MCP tools reach this
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
Search the catalog
curl "https://apis.io/api/v1/search?q=1more-agentic-access&limit=10"
Everything under a tag
curl "https://apis.io/api/v1/tags/1more-agentic-access"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.