OAuth Scopes and Endpoints
Required Scopes for Shopify
When integrating with Shopify, your application needs specific permissions to interact with the API.These permissions are defined by access scopes, which determine what data your application can access and what actions it can perform.
This topic provides information about the required access scopes and endpoint domains for the Shopify connector.
Understanding Scopes
Scopes are a way to limit an application's access to a user's data. They define the specific actions that an application can perform on behalf of the user.
For example, a read-only scope might allow an application to view data, while a full access scope might allow it to modify data.
Required Scopes for Shopify
By default, the connector requests the following OAuth scopes:
- unauthenticated_read_content
- read_shopify_payments_accounts
- read_payment_terms
- read_customer_merge
- read_returns
- read_products
- write_products
- read_files
- write_files
- read_themes
- write_themes
- read_product_listings
- read_customers
- write_customers
- read_orders
- write_orders
- read_draft_orders
- write_draft_orders
- read_inventory
- write_inventory
- read_inventory_shipments
- write_inventory_shipments
- read_locations
- read_fulfillments
- write_fulfillments
- read_assigned_fulfillment_orders
- read_merchant_managed_fulfillment_orders
- read_third_party_fulfillment_orders
- read_shipping
- write_shipping
- read_price_rules
- write_price_rules
- read_discounts
- write_discounts
- read_marketing_events
- write_marketing_events
- read_shopify_payments_payouts
- read_markets
- read_gift_cards
- read_publications
When EnableShopifyPlus is set to true, the connector also requests the read_users scope.