generated: '2026-07-18' method: searched source: https://chill.com/.well-known/openid-configuration docs: https://chill.com/.well-known/openid-configuration summary: types: [oauth2, openIdConnect] oauth2_flows: [authorizationCode] pkce: S256 provider: Shopify Customer Account issuer: https://shopify.com/authentication/56172019867 notes: >- Chill.com runs on Shopify; end-user / customer authentication is Shopify Customer Account OAuth 2.0 + OpenID Connect. Agent commerce over the UCP MCP endpoint reuses these customer-account scopes. Read-only catalog browsing requires no authentication. schemes: - name: ShopifyCustomerAccountOAuth type: oauth2 flow: authorizationCode authorization_endpoint: https://shopify.com/authentication/56172019867/oauth/authorize token_endpoint: https://shopify.com/authentication/56172019867/oauth/token end_session_endpoint: https://shopify.com/authentication/56172019867/logout jwks_uri: https://shopify.com/authentication/56172019867/.well-known/jwks.json code_challenge_methods: [S256] token_endpoint_auth_methods: [client_secret_basic] grant_types: - authorization_code - refresh_token - 'urn:ietf:params:oauth:grant-type:jwt-bearer' id_token_signing_alg: [RS256] sources: [well-known/chill-openid-configuration.json] - name: ShopifyCustomerAccountOIDC type: openIdConnect openIdConnectUrl: https://chill.com/.well-known/openid-configuration claims: [iss, sub, aud, exp, iat, nonce, sid, email, email_verified] subject_types: [public] sources: [well-known/chill-openid-configuration.json]