Agent Payments
How machines initiate, authorize, screen and settle a payment.

Six Banks Publish Voluntary Guardrails for Agentic Commerce, But Lack Enforcement Teeth
Six banks jointly released security guardrails for agentic commerce, but their voluntary nature raises doubts about enforcement, leaving pre-settlement compliance gaps unaddressed.

ESMA Gives EU Crypto Firms Three Months to Wind Down Non-Compliant Stablecoin Exposure
The European Securities and Markets Authority has set a deadline of January 8, 2027 for licensed crypto asset service providers to eliminate exposure to unauthorized stablecoins.

AI Agents Turn 'Permission' Into Payments' New Control Point, as 56% of Consumers Allow Agents Only to Compare Prices
The payments industry has yet to set rules for agent-initiated transactions, but agentic commerce is already creating a new transaction type.

Fireblocks Breaks Down the Full AI Agent Payment Chain: Custody and Policy Engines Are the Real Battleground
Fireblocks has released its Agentic Payments Suite and publicly detailed the end-to-end execution mechanism, pushing agent payments from 'can it pay' to the infrastructure layer of 'who authorizes, who custodies, who intercepts.'

CFOs Rebuild Approval Controls to Prevent Finance AI Agents from Overstepping Authority
Enterprises are granting AI agents real financial authority by connecting them to email, procurement software, ERP systems, bank accounts, and payment infrastructure. The biggest risk is not model hallucination but the permissions themselves: an agent that can read invoices, create vendors, approve purchases, and initiate payments does not need to breach corporate financial controls—those controls may already have been bypassed in the automation process.

OneSafe Releases 2026 Payments Industry Outlook: Fiat, Crypto Assets and New Settlement Channels
The payments security provider outlines three parallel tracks for payment infrastructure over the next two years, arguing that the efficiency of interconnection between them will determine competitiveness.

Hong Kong Stablecoin License Applications Add 39 New Institutions; HSBC Names Its HKD Stablecoin 'HSBC RedCoin'
Hong Kong's stablecoin sandbox applicant list has grown by 39 domestic and overseas institutions spanning banking, brokerage and payments. Meanwhile, HSBC has officially branded its HKD stablecoin project 'HSBC RedCoin', making it one of the first bank-backed issuers to unveil a brand name.

Lagarde: Where AI Risks Meet
The ECB president warns that AI's risks in finance are not isolated but interwoven with cybersecurity, market volatility, data privacy and operational resilience, calling for a holistic regulatory view.

AI Agent Safety Debate Heats Up: When AI Begins to Act Autonomously, Security Must Come First
As AI agents move from conversational tools to systems that can execute tasks on their own, the focus is shifting from model safety to the risks of agent 'actions'—raising questions about permissions, attribution, and pre-settlement controls in payments.

US Senate Report Says Tether's USDT Used in Iran-Related Fund Flows
A US Senate investigation report alleges that Tether's stablecoin USDT was used in Iran-related fund transfers, potentially intensifying scrutiny of stablecoin issuers' AML and sanctions compliance.

US Senate Democrats Accuse Tether's USDT of Helping Iran Evade Sanctions
Lawmakers demand answers from Treasury and Justice on whether Tether's compliance and AML controls are under investigation, as Congress weighs stablecoin legislation.

Citi and Coinbase Bridge Merchant Stablecoin Acceptance: Fiat Deposits Auto-Convert to Stablecoins, Stablecoin Receipts Settled by the Bank
Citi provides regulated banking infrastructure while Coinbase handles on-chain conversion and settlement, letting merchants accept stablecoin payments without holding stablecoins themselves—a division of labor between traditional banks and crypto infrastructure at the settlement layer takes shape for the first time.

Apollo Chief Economist Warns AI Agents Could Drain Cheap Bank Deposits
Torsten Slok says AI agents managing cash and short-term assets could shift the lowest-cost checking and savings deposits into higher-yielding instruments such as money market funds and tokenized Treasuries.

Banks' AI Agent Deployments Raise Hidden Concerns: Zero Rollback Rate May Signal an Observability Blind Spot
A study covering more than 2,500 enterprises shows that banks with stronger governance actually have higher rollback rates—because only systems that can see failures are capable of rolling back.

Bundesbank Warns: Thousands of AI Treasury Agents Acting in Sync Could Trigger Systemic Risk
In its monthly report, the Bundesbank warned that if a large number of AI treasury agents act simultaneously based on similar models and objectives, individually optimal decisions could escalate into systemic payment congestion and sudden liquidity tightening.

New York's AI Safety Law Takes Effect, Putting Banks' Vendor Plans to the Test
New York Governor Kathy Hochul has unveiled the implementation timeline for the RAISE Act, imposing registration and reporting obligations on large frontier model developers. While banks are not directly regulated, their deep reliance on vendor models means any safety incident could disrupt customer service and payment operations.

Crypto Pioneer Warns AI Could Trigger Systemic Banking and Infrastructure Shocks
Adam Back says AI agents are already making payment and settlement decisions faster than banks can respond, warning that unchecked stablecoin access could set off cascading liquidations and strain interbank liquidity.

US State Regulators Issue AI Examination Framework for Banks, Filling Gap as Federal Guidance Remains Absent
The Conference of State Bank Supervisors released a voluntary AI regulatory framework to help examiners identify AI use, assess risks, and decide when to launch deeper reviews—potentially affecting fintechs, lenders, payment firms, and tech platforms operating under state licenses.

PBOC Deputy Governor: AI Technology Brings New Risks Such as Algorithmic Black Boxes
A senior central bank official warns that opaque AI decision-making in credit and risk modeling poses challenges for accountability and compliance audits.

MetaComp Launches AI Agent Governance Framework for Regulated Financial Services
The Singapore-based fintech says its framework provides auditable authorization and compliance controls when agents initiate payments and trades, though clients and a launch date remain undisclosed.

IIFAA Forms Trusted Agent Identity Working Group, with Over 50 Institutions Joining Ecosystem Effort
The alliance aims to establish a unified framework for mutual trust in AI agent payments and identity verification, though technical specifications and timelines remain undisclosed.

PYMNTS: AI Agents Don't Need Company Bank Accounts — They Need 'Permissioned Funding'

Consumers Use AI Assistants but Won't Hand Over Their Wallets: Visa Data Reveals the Agent Payment Trust Gap
Visa research shows 72% of consumers have used AI assistants, but only 23% trust them to handle payments; trust rises to 61% when a payment brand is involved. Trust is the core bottleneck for agent payment adoption, and the industry is breaking through with brand endorsement and tiered authorization.

Sumsub Report: Asymmetric AI Accountability Creates Responsibility Vacuum in Financial Risk Control
Identity verification and compliance tech firm Sumsub finds that AI accountability asymmetry is a pressing issue in financial risk control, urging the industry to establish clear accountability frameworks.

EMVCo Proposes Intent Layer for Agentic Card Payments
The global payments standards body unveils a draft framework to standardize how AI agents authorize card transactions, ensuring they operate within consumer-set limits.

BIS Chief Douses Stablecoin Hype: Not a Scalable Payment Tool, Reigniting Regulatory vs. Market Tensions
Agustín Carstens, General Manager of the Bank for International Settlements, publicly rejects stablecoins as a credible scalable payment mechanism, sharply contrasting with market optimism and sounding an alarm for compliance in emerging use cases like AI-agent payments.

Circle CEO on USDC and AI Payments: Next Five Years Focused on Agent Payment Compliance
Jeremy Allaire sees machine-to-machine payments as the next growth engine for stablecoins, with compliance infrastructure becoming a prerequisite.

AI Agents Have Spent $50M in Crypto—But Who's Responsible?
Machine-to-machine payments are surging, yet the industry still lacks clear accountability frameworks for autonomous transactions.

Washington State Injunction Lands: Kalshi Prediction Market Faces Geo-Fencing Mandate, Regulatory Boundaries Extend to Agent Payments
A Washington court ruled Kalshi cannot offer most prediction contracts in the state, requiring IP-based geo-fencing by August 19. The injunction offers a blueprint for territorial controls and pre-settlement blocking in agent payment compliance.

AI Booking a Gym Class Exposes Payment Security Flaws: Claude Research Highlights Agent Payment Risks
A study involving Anthropic's Claude reveals that a simple AI request to book a gym class could expose critical payment security vulnerabilities, urging standardized safeguards for machine-initiated transactions.

Banks Push Back on FDIC: Stablecoin Wallet Screening Should Fall to Issuers
As the FDIC moves to embed BSA and sanctions compliance into stablecoin issuer oversight, banks draw a clear line in comment letters: wallet screening and secondary-market monitoring belong to issuers, while reserve account banks answer only for their own customers.
Halborn Unveils AI Agent Financial Threat Model, Putting KYA and Pre-Settlement Interception at the Core
As autonomous agents gain authority to move real money, blockchain security firm Halborn argues that compliance must shift from account-level KYC to agent-level verification and settlement-time controls.
INETCO Launches Agentic AI Module BullzAI Investigate, Cutting Fraud Case Review Time to About 20 Seconds
The fully on-premises module uses a proprietary small language model to triage alerts and give analysts explainable risk scores, with human-in-the-loop oversight.

Circle Secures NYDFS Trust Charter, Adding Another State-Level Layer to USDC Regulation
Circle subsidiary receives NYDFS limited-purpose trust charter, complementing federal MSB registration and multi-state licenses

Tether Launches Compliant Stablecoin USAT on Celo Chain, First Move Beyond Ethereum Ecosystem

AI Engineer: Why Agentic Systems Need Ontologies – Logical Guardrails to Prevent Payment Errors

HSBC Joins Effort to Set Asia-Pacific Rules for Agent Payments: When AI Starts Spending, Who Confirms Identity and Bears Responsibility?
The Emerging Payments Association Asia (EPAA) has launched an AI and Agent Payments working group, with HSBC as a founding member, aiming to establish common standards for agent identity, payment authorization, liability allocation, and fraud risk. As AI agents begin to initiate real transactions on behalf of individuals and businesses, the industry must address not just 'how machines pay,' but 'who authorizes, who is responsible, and how to stop risk before funds move.'

Halborn Unveils A2A Payment Threat Model: On-Chain Irreversibility Amplifies Security Risks
Blockchain security firm Halborn has released an Agent-to-Agent payment threat model, highlighting risks such as prompt injection, identity spoofing, wallet key leaks, malicious service providers, smart contract vulnerabilities, oracle manipulation, and cascading payments when AI agents autonomously transact using stablecoins and smart contract wallets.

Attack Lab #5: We Paid One Authorization Twice — and Pushed the Audit Fingerprint Beyond Our Own Reach
Two breaks at once. One: with no single-use nonce, a fully-valid payment could be replayed until the budget drained — we added an anti-replay gate (replay → 409). Two: Episode 4's hash chain lived only in our own DB, so an admin rewriting the whole tail couldn't be disproven — we exposed the tip publicly (/api/audit-anchor) and had GitHub witness it on a schedule. Honest limit: true non-repudiation still needs anchoring to a public chain.

We Attacked a Paying Agent Six Ways — All Six Were Blocked
Prompt injection, whale drain, payee redirection, anonymous impersonation… a real adversarial run against mcp-pay: six blocked, each at a different gate. The key finding — the trust layer must live outside the agent.

Two Paths for Agent Payments: Anonymous Arbitrage or Compliant Trust?
When machines start spending money, the track splits—one path leads to frictionless anonymous arbitrage, the other to verifiable, accountable compliant trust. The choice you make determines where you stand in this era.

AI Spots Ethereum Communication Component Bug, but Human Verification Remains Key
The Ethereum Foundation’s Protocol Security Team used a coordinated group of AI agents to uncover a remotely exploitable crash vulnerability in the libp2p Gossipsub component used by Ethereum consensus clients, which could have caused nodes or validators to go offline temporarily. The bug has been fixed and registered as CVE-2026-34219.

When Machines Start Paying, Who Stops the Money Laundering?
Agent payments promise an efficiency revolution, but they also open an unprecedented attack surface. We need to redesign compliance and security systems for machine-initiated payments—a risk that must be faced, and perhaps one of the biggest infrastructure opportunities of our time.

