ByHeart · OAuth Scopes

ByHeart OAuth Scopes

OAuth 2.0 searched

ByHeart publishes 4 OAuth 2.0 scopes via the authorizationCode flow. Scopes are the fine-grained permissions an application requests at authorization time to act against the ByHeart API on a user’s behalf.

Tokens are issued from https://shopify.com/authentication/59458650296/oauth/token.

This index is generated from the provider’s OpenAPI security definitions (and, where available, its documented scope reference) and refreshes on every APIs.io network build. Browse every provider’s scopes at scopes.apis.io.

CompanyConsumerInfant NutritionBaby FormulaDirect-to-ConsumerEcommerceHealthShopify
Scopes: 4 Flows: authorizationCode Method: searched

OAuth endpoints

Authorization URL
https://shopify.com/authentication/59458650296/oauth/authorize
Token URL
https://shopify.com/authentication/59458650296/oauth/token
Flows
authorizationCode

Scopes (4)

ScopeDescriptionFlows
openid OpenID Connect authentication; returns an ID token for the customer. authorizationCode
email Access to the customer's email address and email_verified claim. authorizationCode
customer-account-api:full Full access to the Shopify Customer Account API for the signed-in customer (orders, profile, addresses). authorizationCode
customer-account-mcp-api:full Full access to the Shopify Customer Account MCP API surface for the signed-in customer. authorizationCode

Source

OAuth Scopes

byheart-scopes.yml Raw ↑
generated: '2026-07-18'
method: searched
source: https://www.byheart.com/.well-known/openid-configuration
docs: https://shopify.dev/docs/api/customer
note: >-
  OAuth scopes advertised by the Shopify Customer Account API authorization
  server for the ByHeart store (issuer shopify.com/authentication/59458650296).
schemes:
- name: shopifyCustomerAccountOIDC
  source: well-known/byheart-openid-configuration.json
  flows:
  - flow: authorizationCode
    authorizationUrl: https://shopify.com/authentication/59458650296/oauth/authorize
    tokenUrl: https://shopify.com/authentication/59458650296/oauth/token
scopes:
- scope: openid
  description: OpenID Connect authentication; returns an ID token for the customer.
  flows: [authorizationCode]
  sources: [well-known/byheart-openid-configuration.json]
- scope: email
  description: Access to the customer's email address and email_verified claim.
  flows: [authorizationCode]
  sources: [well-known/byheart-openid-configuration.json]
- scope: customer-account-api:full
  description: Full access to the Shopify Customer Account API for the signed-in customer (orders, profile, addresses).
  flows: [authorizationCode]
  sources: [well-known/byheart-openid-configuration.json]
- scope: customer-account-mcp-api:full
  description: Full access to the Shopify Customer Account MCP API surface for the signed-in customer.
  flows: [authorizationCode]
  sources: [well-known/byheart-openid-configuration.json]