Cometeer · OAuth Scopes

Cometeer OAuth Scopes

OAuth 2.0 searched

Cometeer publishes 4 OAuth 2.0 scopes via the authorizationCode flow. Scopes are the fine-grained permissions an application requests at authorization time to act against the Cometeer API on a user’s behalf.

Tokens are issued from https://shopify.com/authentication/74101293355/oauth/token.

This index is generated from the provider’s OpenAPI security definitions (and, where available, its documented scope reference) and refreshes on every APIs.io network build. Browse every provider’s scopes at scopes.apis.io.

CompanyCoffeeFood and BeverageE-CommerceDirect to ConsumerRetailSubscriptionAgentic CommerceShopifyModel Context Protocol
Scopes: 4 Flows: authorizationCode Method: searched

OAuth endpoints

Authorization URL
https://shopify.com/authentication/74101293355/oauth/authorize
Token URL
https://shopify.com/authentication/74101293355/oauth/token
Flows
authorizationCode

Scopes (4)

ScopeDescriptionFlows
openid Standard OpenID Connect scope; requests an ID token identifying the shopper. authorizationCode
email Releases the shopper's `email` and `email_verified` claims. authorizationCode
customer-account-api:full Full access to the authenticated shopper's own customer account data (orders, subscriptions, addresses). authorizationCode
customer-account-mcp-api:full Full access to the authenticated shopper's customer account through the MCP agent interface. authorizationCode

Source

OAuth Scopes

Raw ↑
generated: '2026-08-01'
method: searched
source: https://cometeer.com/.well-known/openid-configuration
docs: https://cometeer.com/.well-known/oauth-authorization-server
note: >-
  Scopes are read verbatim from the `scopes_supported` array published by the
  authorization-server metadata served on Cometeer's own apex host. Cometeer
  publishes no separate scope reference page — it is a direct-to-consumer
  storefront, so the OAuth surface exists for shopper sign-in to the Cometeer
  account/subscription portal rather than for third-party API authorization.
  Descriptions below are the standard meanings of these identifiers; the
  provider does not publish prose for them.
schemes:
- name: CometeerCustomerAccountOIDC
  source: well-known/cometeer-openid-configuration.json
  issuer: https://shopify.com/authentication/74101293355
  flows:
  - flow: authorizationCode
    authorizationUrl: https://shopify.com/authentication/74101293355/oauth/authorize
    tokenUrl: https://shopify.com/authentication/74101293355/oauth/token
    pkce: S256
scopes:
- scope: openid
  description: Standard OpenID Connect scope; requests an ID token identifying the shopper.
  standard: OpenID Connect Core 1.0
  flows: [authorizationCode]
  sources: [well-known/cometeer-openid-configuration.json]
- scope: email
  description: Releases the shopper's `email` and `email_verified` claims.
  standard: OpenID Connect Core 1.0
  flows: [authorizationCode]
  sources: [well-known/cometeer-openid-configuration.json]
- scope: customer-account-api:full
  description: Full access to the authenticated shopper's own customer account data (orders, subscriptions, addresses).
  standard: Shopify Customer Account API
  flows: [authorizationCode]
  sources: [well-known/cometeer-openid-configuration.json]
- scope: customer-account-mcp-api:full
  description: Full access to the authenticated shopper's customer account through the MCP agent interface.
  standard: Shopify Customer Account MCP API
  flows: [authorizationCode]
  sources: [well-known/cometeer-openid-configuration.json]
x-evidence:
  fetched: '2026-08-01'
  url: https://cometeer.com/.well-known/openid-configuration
  http_status: 200