{
 "categories": [
  "commerce",
  "saas-platform"
 ],
 "deployment": "saas",
 "evidence": [
  {
   "date": "2026-10-08",
   "fact": "homepage",
   "note": "Norce presents Norce Commerce as a headless SaaS commerce platform and also names Norce PIM and Norce Pricing as packaged capabilities.",
   "source": "https://www.norce.io/",
   "tier": "declared"
  },
  {
   "date": "2026-10-08",
   "fact": "license",
   "note": "The homepage says Norce Commerce is True SaaS with a license fee structure based on usage rates.",
   "source": "https://www.norce.io/",
   "tier": "declared"
  },
  {
   "date": "2026-10-08",
   "fact": "modalities.api.exists",
   "note": "The API reference documents Commerce Services, Product Feed, Management, Connect, Query, Event webhooks, and Norce Checkout.",
   "source": "https://docs.norce.io/api-reference",
   "tier": "declared"
  },
  {
   "date": "2026-10-08",
   "fact": "modalities.api.kinds",
   "note": "Commerce Services, Connect, Management, Product Feed, and Checkout are HTTP APIs. Query is described as an OData REST API.",
   "source": "https://docs.norce.io/api-reference",
   "tier": "declared"
  },
  {
   "date": "2026-10-08",
   "fact": "modalities.api.auth[0]",
   "note": "Services, Connect, Query, Product Feed, and Management use OAuth 2.0 client credentials. The token POST uses grant_type=client_credentials, client_id, client_secret, and an environment scope.",
   "source": "https://docs.norce.io/api-reference/accessing-apis-with-oauth2-accounts",
   "tier": "declared"
  },
  {
   "date": "2026-10-08",
   "fact": "modalities.api.auth[1]",
   "note": "The same page says Norce Checkout does not use that client-credentials flow. It uses static Bearer tokens from onboarding, with X-Merchant and X-Channel headers.",
   "source": "https://docs.norce.io/api-reference/accessing-apis-with-oauth2-accounts",
   "tier": "declared"
  },
  {
   "date": "2026-10-08",
   "fact": "modalities.api.coverage",
   "note": "The reference covers storefront services, bulk import, admin configuration, a read-only query API, webhooks, and checkout adapters. Query has no writes, and PIM and Pricing were not opened as separate APIs.",
   "source": "https://docs.norce.io/api-reference",
   "tier": "declared"
  },
  {
   "date": "2026-10-08",
   "fact": "modalities.extensibility.webhooks",
   "note": "Norce Commerce Event is a webhook collection for data changes. The page says delivery is not real-time and can take a couple of minutes.",
   "source": "https://docs.norce.io/api-reference",
   "tier": "declared"
  },
  {
   "date": "2026-10-08",
   "fact": "modalities.data_access.export[0]",
   "note": "The documented token response is JSON with access_token, expires_in, token_type, and scope. A metadata example requests format=json.",
   "source": "https://docs.norce.io/api-reference/accessing-apis-with-oauth2-accounts",
   "tier": "declared"
  },
  {
   "date": "2026-10-08",
   "fact": "modalities.agent_docs.llms_txt",
   "note": "A request returned HTTP 404 HTML rather than an agent-documentation index. That one URL does not prove Norce publishes no agent guide.",
   "source": "https://docs.norce.io/llms.txt",
   "tier": "declared"
  },
  {
   "date": "2026-10-08",
   "fact": "freshness.watch[3].url",
   "note": "Opened https://docs.norce.io/llms.txt and received a 404 HTML page.",
   "source": "https://docs.norce.io/llms.txt",
   "tier": "declared"
  },
  {
   "date": "2026-10-08",
   "fact": "verdict.scores.api",
   "note": "The commerce APIs are documented and read/write for Services, Connect, and Management, with a one-hour bearer token and a strict token-endpoint rate limit. Checkout uses a second credential, and Query is read-only, so the score stays at 7.",
   "source": "https://docs.norce.io/api-reference/accessing-apis-with-oauth2-accounts",
   "tier": "declared"
  },
  {
   "date": "2026-10-08",
   "fact": "freshness.watch[0].url",
   "note": "Opened the Norce Commerce API reference, including service hosts, Query, Event webhooks, and Checkout adapters.",
   "source": "https://docs.norce.io/api-reference",
   "tier": "declared"
  },
  {
   "date": "2026-10-08",
   "fact": "freshness.watch[1].url",
   "note": "Opened the OAuth2 account page, including client credentials, the one-hour token, the token rate limit, and the Checkout exception.",
   "source": "https://docs.norce.io/api-reference/accessing-apis-with-oauth2-accounts",
   "tier": "declared"
  },
  {
   "date": "2026-10-08",
   "fact": "freshness.watch[2].url",
   "note": "Opened the Norce homepage, including Norce Commerce, PIM, and Pricing.",
   "source": "https://www.norce.io/",
   "tier": "declared"
  }
 ],
 "freshness": {
  "last_verified": "2026-10-08",
  "volatility": "medium",
  "watch": [
   {
    "type": "docs",
    "url": "https://docs.norce.io/api-reference"
   },
   {
    "type": "docs",
    "url": "https://docs.norce.io/api-reference/accessing-apis-with-oauth2-accounts"
   },
   {
    "type": "docs",
    "url": "https://www.norce.io/"
   },
   {
    "type": "docs",
    "url": "https://docs.norce.io/llms.txt"
   }
  ]
 },
 "homepage": "https://www.norce.io/",
 "id": "norce-commerce",
 "license": "commercial",
 "modalities": {
  "agent_docs": {
   "llms_txt": "unknown"
  },
  "api": {
   "auth": [
    "oauth2-client-credentials",
    "bearer-token"
   ],
   "coverage": "partial",
   "docs": "https://docs.norce.io/api-reference",
   "exists": true,
   "kinds": [
    "rest",
    "odata"
   ]
  },
  "cli": {
   "exists": "unknown"
  },
  "computer_use": {
   "issues": [],
   "viability": "unknown"
  },
  "data_access": {
   "export": [
    "json"
   ],
   "import": []
  },
  "extensibility": {
   "scripting": [],
   "webhooks": true
  },
  "integrations": {
   "make": "unknown",
   "n8n": "unknown",
   "power_automate": "unknown",
   "zapier": "unknown"
  },
  "mcp": {
   "first_party": "unknown",
   "third_party": [],
   "verdict": "unknown"
  },
  "rpa": {
   "drivability": "unknown",
   "notes": "No repeatable UI probe was run. Storefront, import, checkout, and admin calls are documented as HTTP.\n",
   "ui_stack": [],
   "vendor_support": []
  },
  "sdk": {
   "exists": "unknown",
   "languages": [],
   "official": "unknown"
  }
 },
 "name": "Norce Commerce",
 "platforms": [
  "web"
 ],
 "related": {
  "alternatives": [
   "centra",
   "litium"
  ],
  "our_products": []
 },
 "schema_version": 1,
 "score_version": 1,
 "status": "active",
 "vendor": "Norce",
 "verdict": {
  "best_path": "api",
  "scores": {
   "api": 7,
   "cli": null,
   "computer_use": null,
   "integrations": null,
   "mcp": null,
   "overall": 7,
   "rpa": null
  },
  "summary": "Norce Commerce is automatable today through its HTTP APIs. This record is the Nordic headless commerce platform, including Commerce Services, Product Feed, Management, Connect, Query, Event webhooks, and Norce Checkout. Norce PIM and Norce Pricing are named on the marketing site as packaged capabilities and were not given a separate API pass. Commerce Services, Connect, Query, Product Feed, and Management use OAuth 2.0 client credentials. The token URL is https://[client].api-[region].[environment].norce.tech/identity/1.0/connect/token with grant_type=client_credentials. Scope is the environment name playground, stage, or prod. The documented token response uses token_type Bearer and expires_in 3600. Calls also send a numeric ApplicationId header. Token requests are limited to 3 per minute per IP, with a burst of 20. Checkout does not use that flow. It uses static Bearer tokens from onboarding, plus X-Merchant and X-Channel. Query is a read-only OData API against the data layer and the docs say it can be slow because it is not cached. Event webhooks signal data changes and can take a couple of minutes. They are not for real-time storefront updates. A first-party MCP server, a language SDK, and a CLI were not established. Connector catalogs were not opened. https://docs.norce.io/llms.txt returned 404 on 2026-10-08, which does not by itself prove that no agent guide exists. Computer-use viability is unassessed. The API scores 7 and is the best path.\n"
 }
}