▸ Blog · Page 2
More from the trenches.
Older posts. Same hot takes.
-
ArchitectureHITL gates for agent mutations
Human-in-the-loop risk gates for refunds, inventory, and spend. Verify mutations after tool calls so agents cannot declare early victory.
Read post →
-
LaravelMCP OAuth PKCE for multi-tenant SaaS
Laravel MCP requires PKCE S256 and prefers Client ID Metadata Documents. How multi-tenant SaaS should bind workspace at consent and avoid common agent auth failures.
Read post →
-
LaravelStateless MCP servers on Laravel
Laravel MCP 1.0 drops session IDs. Scale with Octane and queues, keep auth and idempotency, and pass your own correlation ids in _meta.
Read post →
-
ShopifyBuyer-linked tokens for agent checkout
Exchange a Shop session for a Shopify buyer-linked JWT (~60 minutes, no refresh) so signed-in agents can personalize catalog and complete checkout.
Read post →
-
ShopifyUCP agent profiles are the new OAuth app
Host a UCP agent profile URL, declare cart and checkout capabilities, and climb Anonymous, Signed, and Token trust tiers for Shopify MCP.
Read post →
-
ShopifyCommerce RAG is not document RAG
Shopify Plus catalog RAG needs hybrid lexical plus vector search, then commerce ranking on stock, velocity, and margin. Not LangChain on PDFs.
Read post →
-
LaravelLaravel MCP searchable tool catalogs
Laravel MCP 1.0 searchable catalogs and cache hints cut context bloat. When to expose tools versus discover them with search_tools and execute_tools.
Read post →
-
ShopifyOne Shopify claims pipeline for every claim type
A returns policy is not a returns process. Build one Shopify claims pipeline for returns, damage, and warranty: file, eligibility, queue, Shopify resolve.
Read post →
-
LaravelMCP tool errors agents can actually recover from
Throwing exceptions hides failures from the model. MCP wants isError tool results with actionable text, mapped from Laravel domain failures and audited like auth denials.
Read post →