Skip to content

History of shopify-operations-mcp

io.github.jpka/shopify-operations-mcp · Registry status: active

Report data on this entry

Every published change to this entry, most recent first.

Changes
2026-09-08Connection paths (source structure): – → {"packages":[{"registryType":"npm","identifier":"shopify-operations-mcp","version":"0.1.2","transport":"stdio","environment":[{"name":"SHOPIFY_STORE_DOMAIN","description":"The myshopify.com store domain, e.g. my-store.myshopify.com. Overrides shopify.storeDomain from the config file.","format":"string","required":true,"secret":false},{"name":"SHOPIFY_ADMIN_TOKEN","description":"Shopify Admin API access token. Required and only ever read from the environment — never from the config file.","format":"string","required":true,"secret":true},{"name":"SHOPIFY_CONFIG","description":"Path to a config.json with shopify/plans/approvalServer/protectedTags settings. Defaults to ./config.json in the working directory.","format":"string","required":false,"secret":false},{"name":"SHOPIFY_PLAN_TTL_MS","description":"How long a plan token stays valid before it must be executed or expires, in milliseconds. Default 60000.","format":"string","required":false,"secret":false},{"name":"SHOPIFY_APPROVAL_SERVER_PORT","description":"Port the localhost human-approval HTTP server binds to (127.0.0.1 only). Default 4319.","format":"string","required":false,"secret":false},{"name":"SHOPIFY_PROTECTED_TAGS","description":"Comma-separated tags that plans may never modify; any plan touching an item carrying one is refused. Default do-not-touch.","format":"string","required":false,"secret":false},{"name":"SHOPIFY_CALLER_ID","description":"Identity recorded as the caller on every audit log row. Default unknown.","format":"string","required":false,"secret":false},{"name":"SHOPIFY_AUDIT_PATH","description":"File path for the tamper-evident JSONL audit log. Default shopify-operations-audit.jsonl in the working directory.","format":"string","required":false,"secret":false}],"additional_arguments_declared":false}],"remotes":[]}
2026-08-26Field of use, derived from the vendor description: – → Commerce
2026-08-26Description (raw): – → Safe-write Shopify operations: plan-before-execute writes with out-of-band approval and audit.
2026-08-18Declared version: 0.1.1 → 0.1.2
2026-08-18Last changed in the registry (raw): 2026-08-15 → 2026-08-17
2026-08-18First listed in the registry (raw): 2026-08-15 → 2026-08-17
2026-08-18Package versions (raw): 0.1.1 → 0.1.2
2026-08-16Declared version: – → 0.1.1
2026-08-16Repository URL listed: – → yes
2026-08-16Path argument present: – → no
2026-08-16Execution location: – → local
2026-08-16Required secrets declared: – → yes
2026-08-16Last changed in the registry (raw): – → 2026-08-15
2026-08-16First listed in the registry (raw): – → 2026-08-15
2026-08-16Registry status message (raw): – → –
2026-08-16Schema version of the raw record (raw): – → https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json
2026-08-16Icon formats (raw): – → –
2026-08-16Environment variable descriptions (raw): – → SHOPIFY_ADMIN_TOKEN=Shopify Admin API access token. Required and only ever read from the environment — never from the config file. · SHOPIFY_APPROVAL_SERVER_PORT=Port the localhost human-approval HTTP server binds to (127.0.0.1 only). Default 4319. · SHOPIFY_AUDIT_PATH=File path for the tamper-evident JSONL audit log. Default shopify-operations-audit.jsonl in the working directory. · SHOPIFY_CALLER_ID=Identity recorded as the caller on every audit log row. Default unknown. · SHOPIFY_CONFIG=Path to a config.json with shopify/plans/approvalServer/protectedTags settings. Defaults to ./config.json in the working directory. · SHOPIFY_PLAN_TTL_MS=How long a plan token stays valid before it must be executed or expires, in milliseconds. Default 60000. · SHOPIFY_PROTECTED_TAGS=Comma-separated tags that plans may never modify; any plan touching an item carrying one is refused. Default do-not-touch. · SHOPIFY_STORE_DOMAIN=The myshopify.com store domain, e.g. my-store.myshopify.com. Overrides shopify.storeDomain from the config file.
2026-08-16Environment variable formats (raw): – → string
2026-08-16Delivery form (raw): – → package
2026-08-16Remote hosts (raw): – → –
2026-08-16Remote URLs (raw): – → –
2026-08-16Runtime hints (raw): – → –
2026-08-16Package versions (raw): – → 0.1.1
2026-08-16Package identifiers (raw): – → shopify-operations-mcp
2026-08-16Package registries (raw): – → npm
2026-08-16Repository subfolder (raw): – → –
2026-08-16Repository platform (raw): – → github
2026-08-16Repository (raw): – → https://github.com/jpka/shopify-operations-mcp
2026-08-16Path environment variables (raw): – → –
2026-08-16Path arguments (raw): – → –
2026-08-16Transports (raw): – → stdio
2026-08-16Required secret headers (raw): – → –
2026-08-16Required secret variables (raw): – → SHOPIFY_ADMIN_TOKEN
2026-08-16Environment variables (raw): – → SHOPIFY_STORE_DOMAIN, SHOPIFY_ADMIN_TOKEN, SHOPIFY_CONFIG, SHOPIFY_PLAN_TTL_MS, SHOPIFY_APPROVAL_SERVER_PORT, SHOPIFY_PROTECTED_TAGS, SHOPIFY_CALLER_ID, SHOPIFY_AUDIT_PATH

tracevero · https://tracevero.com/mcp/io-github-jpka-shopify-operations-mcp/aenderungen