100 Thieves · OAuth Scopes
100 Thieves OAuth Scopes
OAuth 2.0
probed
100 Thieves publishes 4 OAuth 2.0 scopes via the authorizationCode flow. Scopes are the fine-grained permissions an application requests at authorization time to act against the 100 Thieves API on a user’s behalf.
Tokens are issued from https://shopify.com/authentication/31052262/oauth/token.
This index is generated from the provider’s OpenAPI security definitions (and, where available, its documented scope reference) and refreshes on every APIs.io network build. Browse every provider’s scopes at scopes.apis.io.
CompanyEsportsGamingApparelRetailE-CommerceEntertainmentMediaDirect To ConsumerAgentic Commerce
Scopes: 4
Flows: authorizationCode
Method: probed
OAuth endpoints
Authorization URL
https://shopify.com/authentication/31052262/oauth/authorize
https://shopify.com/authentication/31052262/oauth/authorize
Token URL
https://shopify.com/authentication/31052262/oauth/token
https://shopify.com/authentication/31052262/oauth/token
Flows
authorizationCode
authorizationCode
Scopes (4)
| Scope | Description | Flows |
|---|---|---|
| openid | Standard OpenID Connect scope — requests an ID token for the signed-in customer. | authorizationCode |
| Releases the customer's email and email_verified claims. | authorizationCode | |
| customer-account-api:full | Full access to the Shopify Customer Account API on behalf of the signed-in customer — orders, addresses, profile. | authorizationCode |
| customer-account-mcp-api:full | Full access to the customer-scoped MCP API on behalf of the signed-in customer. Distinct from the anonymous UCP shopping MCP endpoint at /api/ucp/mcp, which needs no token. | authorizationCode |