Supergoop!

Supergoop! is a prestige suncare brand founded in 2005 by Holly Thaggard and headquartered in San Antonio, Texas, selling SPF-first skincare, body, makeup and kids products direct-to-consumer at supergoop.com and through retail partners; Blackstone Growth took a majority stake in 2021 at a reported $600-700 million valuation. It is not a software company and runs no developer program, but its Shopify storefront exposes three live, anonymous machine surfaces on its own domain: a Universal Commerce Protocol (UCP) shopping MCP server at /api/ucp/mcp with 13 tools, a fully introspectable Storefront GraphQL API at /api/2026-07/graphql.json with 428 types, and agent-facing instructions at /agents.md and /llms.txt that publish the discovery paths, the six-step agent purchase flow and a hard human-approval rule on payment.

Supergoop! publishes 2 APIs on the APIs.io network. Tagged areas include Company, Sunscreen, Skincare, Beauty, and Cosmetics.

Supergoop!’s developer surface includes documentation, support, signup flow, authentication, code examples, and 21 more developer resources.

35.3/100 thin ▬ flat Agent 33/100 agent ready Full breakdown ↓
scored 2026-09-01 · rubric v0.17.2
2 APIs 1 MCP Servers
CompanySunscreenSkincareBeautyCosmeticsConsumer GoodsRetailE-CommerceDirect to ConsumerShopifyAgentic CommerceUniversal Commerce ProtocolMCPGraphQL

Kin Score

Kin Score Kin Score How this is scored →
scored 2026-09-01 · rubric v0.17.2
Composite quality — 35.3/100 · thin
Contract Quality 11.7 / 25
Developer Ergonomics 6.7 / 20
Access Clarity 6.8 / 20
Operational Transparency 0.3 / 13
Contract Governance 2.2 / 12
Discoverability 7.6 / 10
Agent readiness — 33/100 · agent ready
Machine-Readable Contract 18 / 18
Agentic Access Contract 0 / 10
Documented Reversibility 0 / 6
MCP Server 12 / 12
Machine-Readable Auth 10 / 10
Idempotency 9 / 9
Stable Error Semantics 8 / 8
Request/Response Examples 7 / 7
Rate-Limit Signaling 7 / 7
Typed Event Surface 0 / 6
Agent Skills 5 / 5
Well-Known Catalog 0 / 4
Consent & Bot Identity 0 / 3
A2A Agent Card 0 / 8
Dry-Run / Simulate Mode 0 / 4
Delegated User Identity 0 / 6
Protected Resource Metadata 0 / 5
Registration Without a Human 0 / 6
Agentic Commerce Surface 5 / 5
Improve this rating by publishing the missing artifacts — every area above can be raised, and the full rubric is at apis.io/rating/. This rating is computed from github.com/api-evangelist/supergoop: open an issue to ask a question, or submit a pull request to add artifacts. Want it done for you? Prioritized profiling — $2,500 →

APIs 2

Individual APIs this provider publishes, each with its own machine-readable definition.

Supergoop! UCP Shopping MCP Server

A live remote Model Context Protocol server implementing the Universal Commerce Protocol dev.ucp.shopping service for the Supergoop! store. An anonymous tools/list returns 13 to...

Supergoop! Storefront GraphQL API

The Shopify Storefront GraphQL API as served for supergoop.com. Introspection is open and anonymous, returning 428 types, 34 root query fields and 41 mutations covering products...

MCP Servers 1

Model Context Protocol servers that expose these APIs to AI agents.

Supergoop! UCP Shopping MCP Server

Supergoop! serves a live, remote Model Context Protocol server at https://supergoop.com/api/ucp/mcp implementing the Universal Commerce Protocol (UCP) shopping service. An anony...

MCP SERVER

Pricing Plans 1

Published pricing tiers and plan structures.

Rate Limits 1

Documented rate limits and quota policies.

Supergoop Rate Limits

0 limits

RATE LIMITS

Examples 4

Example request and response payloads for these APIs.

Security Posture 2

Authentication, domain security, vulnerability disclosure, and trust-center signals.

Supergoop Authentication

5 schemes

SECURITY

Supergoop Domain Security

TLSv1.3 · HSTS · DMARC

SECURITY

Scopes 1

OAuth scopes governing access to this provider's APIs.

Supergoop Scopes

OAuth 2.0 · no documented scopes

0 scopes

SCOPES

Resources

Get Started 2

Portal, sign-up, and the first successful call

Documentation 1

Reference material describing how the API behaves

Agent Surfaces 4

MCP servers, agent skills, and machine-readable catalogs

Design & Contract 6

Pagination, idempotency, versioning, errors, and events

Build 3

SDKs, sample code, and the tooling you integrate with

Access & Security 3

Authentication, authorization, and security posture

Operate 2

Status, limits, changes, and where to get help

Commercial 3

Pricing, plans, and the legal terms of use

Company 1

The organization behind the API

Other 1

Properties that don't map to a standard resource type

Source (apis.yml)

apis.yml Raw ↑
aid: supergoop
name: Supergoop!
description: 'Supergoop! is a prestige suncare brand founded in 2005 by Holly Thaggard and headquartered in San Antonio, Texas,
  selling SPF-first skincare, body, makeup and kids products direct-to-consumer at supergoop.com and through retail partners;
  Blackstone Growth took a majority stake in 2021 at a reported $600-700 million valuation. It is not a software company and
  runs no developer program, but its Shopify storefront exposes three live, anonymous machine surfaces on its own domain:
  a Universal Commerce Protocol (UCP) shopping MCP server at /api/ucp/mcp with 13 tools, a fully introspectable Storefront
  GraphQL API at /api/2026-07/graphql.json with 428 types, and agent-facing instructions at /agents.md and /llms.txt that
  publish the discovery paths, the six-step agent purchase flow and a hard human-approval rule on payment.'
image: https://supergoop.com/cdn/shop/files/logo_desktop.svg
url: https://raw.githubusercontent.com/api-evangelist/supergoop/refs/heads/main/apis.yml
x-type: company
x-source: harvest:secondary-market
x-tier: profiled
x-tier-reason: enrichment
specificationVersion: '0.20'
created: '2026-08-29'
modified: '2026-08-29'
tags:
- Company
- Sunscreen
- Skincare
- Beauty
- Cosmetics
- Consumer Goods
- Retail
- E-Commerce
- Direct to Consumer
- Shopify
- Agentic Commerce
- Universal Commerce Protocol
- MCP
- GraphQL
tags_raw:
- Company
- Sunscreen
- Skincare
- Beauty
- Cosmetics
- Consumer Goods
- Retail
- E-Commerce
- Direct to Consumer
- Shopify
- Agentic Commerce
- Universal Commerce Protocol
- Model Context Protocol
- GraphQL
apis:
- name: Supergoop! UCP Shopping MCP Server
  description: A live remote Model Context Protocol server implementing the Universal Commerce Protocol dev.ucp.shopping service
    for the Supergoop! store. An anonymous tools/list returns 13 tools with full JSON Schema inputSchemas covering catalog
    search and lookup, cart, checkout and order retrieval. Catalog and cart calls require a fetchable UCP agent profile URI;
    order calls require a JWT; completing a checkout requires an idempotency key and explicit human payment approval.
  humanURL: https://supergoop.com/agents.md
  baseURL: https://supergoop.com/api/ucp/mcp
  tags:
  - MCP
  - Agentic Commerce
  - Universal Commerce Protocol
  - Shopping
  - Checkout
  properties:
  - type: Documentation
    url: https://supergoop.com/agents.md
- name: Supergoop! Storefront GraphQL API
  description: The Shopify Storefront GraphQL API as served for supergoop.com. Introspection is open and anonymous, returning
    428 types, 34 root query fields and 41 mutations covering products, collections, search, blogs, pages, menus, localization,
    cart lifecycle and customer accounts. Query cost is returned inline on every response as extensions.cost.
  humanURL: https://supergoop.com/agents.md
  baseURL: https://supergoop.com/api/2026-07/graphql.json
  tags:
  - GraphQL
  - Catalog
  - Product
  - Cart
  - E-Commerce
  tags_raw:
  - GraphQL
  - Catalog
  - Products
  - Cart
  - E-Commerce
  properties:
  - type: GraphQL
    url: graphql/supergoop-storefront-2026-07.graphql
maintainers:
- FN: Kin Lane
  email: kin@apievangelist.com
- FN: APIs.json
  email: info@apis.io
common:
- type: DomainSecurity
  url: security/supergoop-domain-security.yml
- type: Website
  url: https://supergoop.com/
- type: Documentation
  url: https://supergoop.com/agents.md
- type: Support
  url: https://supergoop.com/pages/faq-help
- type: SignUp
  url: https://supergoop.com/account/register
- type: Login
  url: https://supergoop.com/account/login
- type: TermsOfService
  url: https://supergoop.com/policies/terms-of-service
- type: PrivacyPolicy
  url: https://supergoop.com/policies/privacy-policy
- type: GitHubOrganization
  url: https://github.com/supergoop
- type: SecondaryMarketListing
  url: https://www.hiive.com/securities/supergoop-stock
- type: LLMsTxt
  url: llms/supergoop-llms.txt
- type: WellKnown
  url: well-known/supergoop-well-known.yml
- type: Authentication
  url: authentication/supergoop-authentication.yml
- type: OAuthScopes
  url: scopes/supergoop-scopes.yml
- type: ErrorCatalog
  url: errors/supergoop-problem-types.yml
- type: RateLimits
  url: rate-limits/supergoop-rate-limits.yml
- type: MCPServer
  url: mcp/supergoop-mcp.yml
- type: ToolCrosswalk
  url: mcp/supergoop-tool-crosswalk.yml
- type: Conventions
  url: conventions/supergoop-conventions.yml
- type: Idempotency
  url: conventions/supergoop-conventions.yml
- type: Lifecycle
  url: lifecycle/supergoop-lifecycle.yml
- type: Conformance
  url: conformance/supergoop-conformance.yml
- type: DataModel
  url: data-model/supergoop-data-model.yml
- type: AgentSkill
  url: skills/_index.yml
- type: Examples
  url: examples/_index.yml
- type: Plans
  url: plans/supergoop-plans-pricing.yml
x-enrichment:
  date: '2026-08-29'
  status: enriched
  artifacts_added: 32
  pass: local-v1

Work with this as data

Every provider here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for providers

9 MCP tools reach this
  • find_providersBrowse and filter every provider in the catalog.
  • get_provider_artifactsEvery artifact this provider publishes, grouped by type.
  • get_provider_operationsEvery operation across all of their OpenAPIs — one call instead of parsing every spec.
  • get_provider_toolsEvery MCP tool they ship, with the operation each wraps.
  • get_provider_evidenceHow each part of their score was established. Free — the basis for a claim should not sit behind it.
  • get_provider_ratingPRO — composite, band, trend and facet scores.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This provider
curl "https://apis.io/api/v1/providers/supergoop"
All providers
curl "https://apis.io/api/v1/providers?limit=25"
Every operation they expose
curl "https://apis.io/api/v1/providers/supergoop/operations?limit=25"
How their score was established
curl "https://apis.io/api/v1/providers/supergoop/evidence"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no email required.

A second provider on the same verified email joins the account you already have.