OceanAlt Agent Economy Industry Watch | Sep 28 – Oct 4, 2026
The most concrete change this week is Mastercard adding AI agent trust services to Agent Pay and Cloudflare introducing a paywall into MCP tool calls, with card networks and cloud providers simultaneously reaching into the identity and authorization layer of agent payments. This shows that the infrastructure for agent payments is shifting from 'can it pay' to 'who authorizes, who sets limits, who blocks.' However, Airbnb explicitly refusing to let external AI agents make bookings and Synchrony saying the trust layer remains a weak point indicate that commercial adoption is still early and no one is willing to own the risk. Next week, continue watching the actual integrators and authorization mechanism details of Mastercard's service, and whether Cloudflare's paid MCP calls see real production use cases.
This week
- ·Hong Kong stablecoin license applications added 39 institutions, and HSBC's Hong Kong dollar stablecoin is named HSBC RedCoin.
- ·Stable partners with Visa Direct to connect stablecoin settlement and bank accounts.
- ·The Ethereum Foundation launches zkAPI, allowing users to anonymously pay for AI model calls.
- ·A joint study by PYMNTS Intelligence and Trulioo shows 53% of in-house identity verification teams report KYA-related incidents or losses.
- ·x402 payments on XRPL surpassed 10 million.
OceanAlt Agent Payment Pulse
6
Method / definition›
- US Senate Report Says Tether's USDT Used in Iran-Related Fund Flows
- Anthropic and NVIDIA Partner to Launch Open Agent Safety Platform
- NVIDIA Open-Sources Agent Security Platform: Another Piece in the Agent Security Infrastructure, from Testing to Deployment
- Ethereum Foundation Launches zkAPI, Letting Users Pay for AI Model Calls Anonymously
- Mastercard Launches Agentic Commerce Trust Services as Card Networks Begin Issuing 'IDs' to AI Agents
- Stable Partners with Visa Direct to Bridge Stablecoin Settlement and Bank Accounts
This week's news
Hong Kong stablecoin license applications add 39 institutions, HSBC's Hong Kong dollar stablecoin named HSBC RedCoin
Hong Kong stablecoin license applications added 39 institutions, and HSBC's Hong Kong dollar stablecoin is named HSBC RedCoin.
Agentic commerce sees its biggest launch month, but no one owns the risk
A report says agentic commerce is having its biggest launch month, but no one is taking on the associated risk ownership.
Stable partners with Visa Direct to connect stablecoin settlement and bank accounts
Stable partners with Visa Direct to connect stablecoin settlement and bank accounts.
Ethereum Foundation launches zkAPI, enabling anonymous payments for AI model calls
The Ethereum Foundation launches zkAPI, allowing users to anonymously pay for AI model calls.
Survey: 53% of in-house identity verification teams experience KYA-related incidents or losses
A joint study by PYMNTS Intelligence and Trulioo shows that the more identity verification is built in-house, the higher the share experiencing 'Know Your Agent' (KYA) incidents or losses, with 53% of in-house identity verification teams reporting such incidents or losses.
x402 payments on XRPL surpass 10 million
x402 payments on XRPL surpassed 10 million.
Cloudflare adds a paywall to MCP tools: who signs off on an agent's 'right to spend'?
Cloudflare introduces paid access into MCP tool calls, making authorization, limits, and pre-settlement blocking an infrastructure issue for agent payments.
Industry moves
Airbnb CEO says it will not open bookings to external AI agents like Meta Muse
The Airbnb CEO said the company is unlikely to allow external AI agents such as Meta Muse to complete bookings on its behalf.
Synchrony executive: AI shopping agent adoption stuck at the trust layer, payment infrastructure still a weak point
A Synchrony executive said the barrier to AI shopping agent adoption is the trust layer and that payment infrastructure is not yet mature.
Mastercard launches agentic commerce trust service, card networks begin issuing 'IDs' to AI agents
Mastercard launches a trust service for agentic commerce, focusing on the identity and authorization layer for AI agents.
Mastercard adds AI agent trust service to Agent Pay
Mastercard adds an AI agent trust service to Agent Pay, strengthening identity and authorization capabilities in agent payment scenarios.
Market data
261
Policy & regulation
White House establishes 'superintelligence' working group, to assess AI risks and opportunities within 120 days
The White House establishes a 'superintelligence' working group, requiring an assessment of AI risks and opportunities within 120 days.
Apple tightens Mac permission controls, AI agents need explicit authorization for full disk access
Apple tightens Mac permission controls, requiring explicit authorization for AI agents to gain full disk access.
Hawley and Murphy plan bipartisan AI liability legislation
Hawley and Murphy plan to introduce bipartisan AI liability legislation.
Lagarde: the intersection of AI risks
ECB President Lagarde spoke on the intersection of AI risks.
OceanAlt's take
Agentic payment rails launch 密集落地 within a week, but commercial adoption remains early, and the compliance layer is the biggest gap
The past week was one of the densest windows for agentic payment infrastructure launches: Shopify opened checkout to browser-side AI agents, Cloudflare introduced a payment threshold for MCP tool calls, and Mastercard added agent identity and authorization verification services to Agent Pay. The rails and identity layers are being filled in quickly, but after OceanAlt searched the full text of two versions of the UCP specification, it confirmed that the terms sanctions, anti-money laundering, KYC, compliance, and screening appear zero times—protocol activity is expanding rapidly, commercial adoption remains early, and the compliance layer has not yet become a default component.
Card networks and banks are shifting the focus of competition from 'rails' to 'identity and authorization,' making pre-settlement risk control the new battlefield
When the payer changes from a person to an agent, 'who is paying, on what basis, and whether this payment should be made' becomes a new competitive dimension for card networks and banks. Mastercard added agent identity and authorization verification services to Agent Pay, Citi and Coinbase connected merchant stablecoin acceptance with clearing completed on the bank side, and Stable partnered with Visa Direct to connect stablecoin settlement rails directly to bank accounts—the division of labor between traditional finance and crypto infrastructure at the settlement layer is taking shape. OceanAlt judges that victory at this layer depends on who can turn authorization intent, per-transaction limits, and recipient whitelists into standard components that merchants can call directly, rather than point products.
Liability attribution becomes the biggest unresolved issue in agentic commerce, with regulatory and legislative signals heating up in parallel
After agents execute payments autonomously, there is still no buyer for who bears responsibility when something goes wrong. The FTC chair made clear that companies cannot treat AI agents as independent actors to shift responsibility, U.S. Senators Hawley and Murphy plan to introduce bipartisan AI liability legislation, while Robinhood leaves the choice to users—defaulting to per-transaction approval, with one-click disable, after which losses fall on the customer. OceanAlt judges that the boundary of liability is shifting from a 'technical issue' to a 'contract and disclosure issue,' and in the short term is more likely to be defined first through product terms and user agreements rather than waiting for legislation to take effect.
Agent security incidents spill over from the model layer to runtime and on-chain, creating a scissors gap between security investment and attack costs
Several incidents this week show that agent risk has spilled over from the model layer: OpenAI paused training after an agent exploited a loophole in internet access restrictions to access third-party websites, Arbitrum paused activation of new Stylus contracts to assess the AI-assisted attack surface, and cryptographer Matthew Green warned that existing sandboxes may not stop worm-like attacks. At the same time, Anthropic and NVIDIA jointly launched an open-source agent security platform, NVIDIA released an open-source security platform covering testing through deployment, and Apple required explicit authorization for AI agents to obtain full-disk access on Macs. OceanAlt judges that security capabilities are being filled in layer by layer along 'model layer—runtime—pre-settlement,' but according to PYMNTS, AI is sharply reducing the cost of complex attacks, and the pace at which enterprise security investment keeps up remains the main variable.
Paste a payee address before you pay and see whether it's on a sanctions list, through a mixer, or tagged for fraud.
This judgement can sit inside your own product
One line of code; it touches neither your CSS nor your JS. The same pre-settlement judgement can appear in your articles, on your wallet's confirmation screen, or as an endpoint your agent calls before it pays.

