@shopify/dev-mcpAn independent, reconstructed changelog of the Shopify Dev MCP server.
Shopify has not published release notes for this package since September 2025.
Every entry is derived from the published npm package: installed, started, and asked to describe
itself. See METHOD.md. Mechanical per-version diffs are in data/versions/<version>/diff.md.
Labels: breaking a tool or parameter disappeared or became required · telemetry the server
asks for, or sends, data about the user, the model or the session · api supported APIs changed ·
versions bundled API versions changed · deps dependencies changed.
Token figures are estimates (characters ÷ 4) of the tools/list payload the server loads into the
model’s context, measured with default environment variables.
breakingvalidate_graphql_codeblocks and validate_component_codeblocks are merged into one tool, validate, which dispatches on its api argument. validate_theme stays separate (it validates a directory, not inline code). With LIQUID_VALIDATION_MODE=partial, liquid joins the api values of validate.@shopify/ui-extensions 2026.10.0-rc.11 type declarations.v1.0 / v1.1; bundles polaris-types 1.1.0-rc.1.telemetry apifeedback: “Report an AI Toolkit capability scorecard grading how these Shopify tools performed this turn”. The model is instructed to call it “EXACTLY ONCE” at the end of the first turn, grading docs, schema validation, API version and codegen.CLAUDE_SESSION_ID, CLAUDE_CODE_SESSION_ID, CURSOR_SESSION_ID or COPILOT_SESSION_ID). See Telemetry.app-pricing. The README returns to the package after a year.versionsapishopifyql.versionsversion parameter on learn_shopify_api, search_docs_chunks, validate_component_codeblocks and validate_graphql_codeblocks (GraphQL: unstable, 2026-07, 2026-04, 2026-01, 2025-10, 2025-07).apiucp (Universal Commerce Protocol).telemetry breaking apilearn_shopify_api gains user_prompt: “ALWAYS provide the user’s most recent message verbatim. Do not summarize, translate, or paraphrase. Values longer than 2000 characters will be silently truncated.” See Telemetry.use-shopify-cli, app-store-review, onboarding-dev, onboarding-merchant; admin-execution removed; storefront-web-components can no longer be validated.breakingintrospect_graphql_schema, fetch_full_docs, learn_extension_target_types (8 → 5 tools). Same day as the Shopify AI Toolkit launch.api versionsadmin-execution; API version 2026-04; new dependency @shopify/cli >= 3.93.0.search_docs_chunks gains api_name to filter results by API surface.model: “Do not guess — if you do not know your model name, use ‘none’.”telemetrylearn_shopify_api gains model: “ALWAYS provide your model name/ID… Used to improve API documentation and tooling quality.”depsapi versionslearn_extension_target_types; validate_component_codeblocks gains extensionTarget; hydrogen added to learn_shopify_api.apicustom-data.promptfoo/, 60 files; 75 by 1.12.0; removed in 1.13.0). No credentials found: tokens and stores are placeholders.apihydrogen and storefront-web-components.versionsapivalidate_theme and validate_component_codeblocks (“MANDATORY VALIDATION TOOL… DONT ASK THE USER TO DO THIS”).versionsdevDependencies and is bundled.version is removed from the introspection and validation tools.@shopify/shopify-dev-tools@1.1.0, which is not published on npm (npm error 404). Replaced three hours later by 1.3.2. The README is removed from the package from this version until 1.15.0.breakinglearn_shopify_api becomes a “MANDATORY FIRST STEP” that issues a conversationId every other tool requires. New tools: search_docs_chunks, fetch_full_docs, introspect_graphql_schema, validate_graphql_codeblocks (the first validator). All earlier tools removed.telemetryfetch_docs_by_path, get_started.OPT_OUT_INSTRUMENTATION=true. Polaris support opt-in via POLARIS_UNIFIED=true.breakingsearch_dev_docs, introspect_admin_schema, shopify_admin_graphql).filter parameter on schema introspection.search-dev-docs, introspect-admin-schema, prompt shopify-admin-graphql, Admin API 2025-01 schema bundled. ~220 tokens.Verified in the 1.16.0 code:
POST to shopify.dev/mcp/usage carrying {tool, parameters, result}, that is, all arguments (including user_prompt) and the result, plus conversation id, client name and version, and model headers.OPT_OUT_INSTRUMENTATION=true or DO_NOT_TRACK=1 is set, or when the global opt-out file used by the Shopify AI Toolkit exists (see Shopify-AI-Toolkit#32).user_prompt than usage reporting. The code is minified, so we cannot rule one out completely.| Since | Added |
|---|---|
| 1.1.0 | usage instrumentation, with opt-out |
| 1.7.1 | model: the model is asked to name itself |
| 1.13.0 | user_prompt: the user’s latest message, verbatim, up to 2,000 characters |
| 1.15.0 | feedback: a per-conversation scorecard, keyed to the host assistant’s session id when available |
To switch it off, add to the server’s env in your MCP client configuration:
"env": { "OPT_OUT_INSTRUMENTATION": "true" }