generated: '2026-08-13' method: probed source: https://www.hudsonjeans.com/.well-known/openid-configuration docs: https://shopify.dev/docs/api/customer notes: >- scopes_supported advertised by the authorization servers behind Centric Brands' owned-brand storefronts (Shopify Customer Accounts). Identical on all eight probed hosts, with a per-store issuer. There is no corporate Centric Brands OAuth server; these scopes govern buyer-delegated access to a single brand store, not company data. schemes: - name: ShopifyCustomerAccountOIDC source: well-known/centric-brands-openid-configuration.json flows: - flow: authorizationCode authorizationUrl: https://shopify.com/authentication/1157103680/oauth/authorize tokenUrl: https://shopify.com/authentication/1157103680/oauth/token scopes: - scope: openid description: OpenID Connect authentication; issue an ID token for the buyer. flows: - authorizationCode sources: - well-known/centric-brands-openid-configuration.json - scope: email description: Access the buyer's email address claim. flows: - authorizationCode sources: - well-known/centric-brands-openid-configuration.json - scope: customer-account-api:full description: >- Full access to the Shopify Customer Account API on behalf of the signed-in buyer (orders, addresses, profile) for that brand store. flows: - authorizationCode sources: - well-known/centric-brands-openid-configuration.json - scope: customer-account-mcp-api:full description: >- Full access to the Customer Account MCP API surface, the authenticated counterpart to the anonymous UCP shopping tools. flows: - authorizationCode sources: - well-known/centric-brands-openid-configuration.json