BrewDog · OAuth Scopes

BrewDog OAuth Scopes

OAuth 2.0 probed

BrewDog publishes 4 OAuth 2.0 scopes via the authorizationCode flow. Scopes are the fine-grained permissions an application requests at authorization time to act against the BrewDog API on a user’s behalf.

Tokens are issued from https://shopify.com/authentication/82272813382/oauth/token.

This index is generated from the provider’s OpenAPI security definitions (and, where available, its documented scope reference) and refreshes on every APIs.io network build. Browse every provider’s scopes at scopes.apis.io.

CompanyFood and BeverageBeerBrewingRetaileCommerceConsumer Packaged GoodsHospitalityAgentic CommerceShopify
Scopes: 4 Flows: authorizationCode Method: probed

OAuth endpoints

Authorization URL
https://shopify.com/authentication/82272813382/oauth/authorize
Token URL
https://shopify.com/authentication/82272813382/oauth/token
Flows
authorizationCode

Scopes (4)

ScopeDescriptionFlows
openid Standard OpenID Connect scope; requests an ID token for the signed-in BrewDog customer. authorizationCode
email Releases the customer's email address and email_verified claim. authorizationCode
customer-account-api:full Full access to the Shopify Customer Account API on behalf of the signed-in BrewDog customer (orders, addresses, profile, subscriptions). authorizationCode
customer-account-mcp-api:full Full access to the Shopify Customer Account MCP API on behalf of the signed-in customer — the authenticated, account-scoped agent surface that sits alongside the anonymous UCP shopping MCP endpoint. authorizationCode

Source

OAuth Scopes

brewdog-scopes.yml Raw ↑
generated: '2026-08-02'
method: probed
source: https://brewdog.com/.well-known/openid-configuration
note: BrewDog publishes no OpenAPI, so these scopes were not derived from oauth2
  securitySchemes. They are the scopes_supported array of the OIDC discovery document
  BrewDog serves from its own origin for its Shopify Customer Account identity
  provider. No provider-published scope reference page was found.
schemes:
- name: shopify-customer-account-oidc
  source: well-known/brewdog-openid-configuration.json
  issuer: https://shopify.com/authentication/82272813382
  flows:
  - flow: authorizationCode
    authorizationUrl: https://shopify.com/authentication/82272813382/oauth/authorize
    tokenUrl: https://shopify.com/authentication/82272813382/oauth/token
    pkce: S256
scopes:
- scope: openid
  description: Standard OpenID Connect scope; requests an ID token for the signed-in
    BrewDog customer.
  flows: [authorizationCode]
  sources: [well-known/brewdog-openid-configuration.json]
- scope: email
  description: Releases the customer's email address and email_verified claim.
  flows: [authorizationCode]
  sources: [well-known/brewdog-openid-configuration.json]
- scope: customer-account-api:full
  description: Full access to the Shopify Customer Account API on behalf of the
    signed-in BrewDog customer (orders, addresses, profile, subscriptions).
  flows: [authorizationCode]
  sources: [well-known/brewdog-openid-configuration.json]
- scope: customer-account-mcp-api:full
  description: Full access to the Shopify Customer Account MCP API on behalf of the
    signed-in customer — the authenticated, account-scoped agent surface that sits
    alongside the anonymous UCP shopping MCP endpoint.
  flows: [authorizationCode]
  sources: [well-known/brewdog-openid-configuration.json]
x-evidence:
  fetched: '2026-08-02'
  url: https://brewdog.com/.well-known/openid-configuration
  http_status: 200
  content_type: application/json; charset=utf-8