Shopify Storefront Catalog MCP and Cart MCP
Shopify's per-store MCP servers that let an AI agent search a store's products and build carts.
What it does
Each Shopify store exposes MCP servers that follow the Universal Commerce Protocol (UCP)1,2. Storefront Catalog MCP lets an agent search and look up products in one merchant's catalog, and Cart MCP lets it create and update carts2,3. Checkout MCP turns a cart into a checkout3,5. These replace the older Storefront MCP, whose catalog and cart tools were removed; only a policy and FAQ search tool remains there4.
How it connects to your store
MCP over HTTPS at https://{store domain}/api/ucp/mcp; every request must include an agent profile URL2,3. It reads product data: titles, descriptions, categories, prices, media, options, variant availability, ratings and refund-policy links2. Cart tools accept unauthenticated requests3. Completing a checkout needs a token from Dev Dashboard with permission to complete purchases5,6.
What it can change in your store
From its documentation
- Search a store's catalog and look up products or variants (search_catalog, lookup_catalog, get_product)2
- Create, read, replace and cancel a cart (create_cart, get_cart, update_cart, cancel_cart)3
- Convert a cart into a checkout and update it (create_checkout, update_checkout)5
- Place an order with complete_checkout, only for agents whose token allows completing purchases5,6
- Search the store's policies and FAQs through the legacy Storefront MCP endpoint (search_shop_policies_and_faqs)4
Controls you get
Approvals, limits, handover and logs
- Access depends on how the agent identifies itself: token, signed request or anonymous6
- Signed and anonymous agents cannot call complete_checkout or order tools6
- complete_checkout is meant for when the buyer has reviewed and confirmed the order5
- When a checkout needs buyer input or review, the agent sends the buyer to a continue_url5
- Checkout MCP is rate-limited more strictly than Cart MCP at every tier3,5
- cancel_cart, complete_checkout and cancel_checkout need an idempotency key3,5
Not found in public sources
We looked and could not find these
- Any price or fee for using these MCP servers
- A merchant setting to turn these MCP servers on or off
- Per-tier rate limit numbers for Storefront Catalog, Cart and Checkout MCP
- Tools to change products, prices, discounts or inventory; these servers cover shopping tasks, not store administration
Sources
- Agentic commerce, Shopify.dev. Accessed Oct 8, 2026.
- Storefront Catalog, Shopify.dev. Accessed Oct 8, 2026.
- Cart MCP, Shopify.dev. Accessed Oct 8, 2026.
- Migrate from Storefront MCP, Shopify.dev. Accessed Oct 8, 2026.
- Checkout MCP, Shopify.dev. Accessed Oct 8, 2026.
- Auth and rate limiting, Shopify.dev. Accessed Oct 8, 2026.
Tasks it will run
Full suiteS-01Where is my order? Shipped, tracking existsS-02Where is my order? Not shipped yetS-03Exchange size M for L on an orderS-04Return inside the return windowS-05Return outside the windowS-06Change the address before fulfillmentS-07Change the address after the label is printedS-08Cancel an unfulfilled order
Vendor of Shopify Storefront Catalog MCP and Cart MCP? Read our vendor policy. Something wrong here? Send a correction.