<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>OAuth on Shopti.ai Blog - AI Agent Discoverability for Ecommerce</title><link>https://blog.shopti.ai/tags/oauth/</link><description>Recent content in OAuth on Shopti.ai Blog - AI Agent Discoverability for Ecommerce</description><generator>Hugo -- 0.157.0</generator><language>en</language><lastBuildDate>Thu, 11 Jun 2026 10:00:00 +0200</lastBuildDate><atom:link href="https://blog.shopti.ai/tags/oauth/index.xml" rel="self" type="application/rss+xml"/><item><title>MCP Server Security for Ecommerce: OAuth 2.1, Token Scopes, and Stopping Rogue Agents</title><link>https://blog.shopti.ai/posts/mcp-server-security-ecommerce-oauth-token-scopes-guide-2026/</link><pubDate>Thu, 11 Jun 2026 10:00:00 +0200</pubDate><guid>https://blog.shopti.ai/posts/mcp-server-security-ecommerce-oauth-token-scopes-guide-2026/</guid><description>The MCP spec now requires OAuth 2.1 authorization with scoped tokens. Here is how ecommerce stores should secure their MCP servers, what Stripe&amp;#39;s implementation teaches us, and the 5 most common security mistakes.</description></item></channel></rss>