generated: '2026-08-02' method: probed source: https://brewdog.com/.well-known/openid-configuration note: BrewDog publishes no OpenAPI, so these scopes were not derived from oauth2 securitySchemes. They are the scopes_supported array of the OIDC discovery document BrewDog serves from its own origin for its Shopify Customer Account identity provider. No provider-published scope reference page was found. schemes: - name: shopify-customer-account-oidc source: well-known/brewdog-openid-configuration.json issuer: https://shopify.com/authentication/82272813382 flows: - flow: authorizationCode authorizationUrl: https://shopify.com/authentication/82272813382/oauth/authorize tokenUrl: https://shopify.com/authentication/82272813382/oauth/token pkce: S256 scopes: - scope: openid description: Standard OpenID Connect scope; requests an ID token for the signed-in BrewDog customer. flows: [authorizationCode] sources: [well-known/brewdog-openid-configuration.json] - scope: email description: Releases the customer's email address and email_verified claim. flows: [authorizationCode] sources: [well-known/brewdog-openid-configuration.json] - scope: customer-account-api:full description: Full access to the Shopify Customer Account API on behalf of the signed-in BrewDog customer (orders, addresses, profile, subscriptions). flows: [authorizationCode] sources: [well-known/brewdog-openid-configuration.json] - scope: customer-account-mcp-api:full description: Full access to the Shopify Customer Account MCP API on behalf of the signed-in customer — the authenticated, account-scoped agent surface that sits alongside the anonymous UCP shopping MCP endpoint. flows: [authorizationCode] sources: [well-known/brewdog-openid-configuration.json] x-evidence: fetched: '2026-08-02' url: https://brewdog.com/.well-known/openid-configuration http_status: 200 content_type: application/json; charset=utf-8