• bitcoinBitcoin(BTC)$83,039.00-2.16%
  • ethereumEthereum(ETH)$2,667.03-1.56%
  • tetherTether(USDT)$1.00-0.01%
  • binancecoinBNB(BNB)$763.15-2.12%
  • rippleXRP(XRP)$1.49-3.04%
  • usd-coinUSDC(USDC)$1.000.00%
  • solanaSolana(SOL)$118.62-4.31%
  • tronTRON(TRX)$0.333958-0.07%
  • zcashZcash(ZEC)$1,566.91-5.66%
  • Figure HelocFigure Heloc(FIGR_HELOC)$1.060.00%
  • HyperliquidHyperliquid(HYPE)$89.91-3.49%
  • dogecoinDogecoin(DOGE)$0.093167-4.85%
  • chainlinkChainlink(LINK)$14.08-1.40%
  • moneroMonero(XMR)$530.42-4.17%
  • whitebitWhiteBIT Coin(WBT)$83.06-1.93%
  • USDSUSDS(USDS)$1.00-0.02%
  • cardanoCardano(ADA)$0.245678-4.38%
  • RainRain(RAIN)$0.012533-1.12%
  • leo-tokenLEO Token(LEO)$9.060.46%
  • stellarStellar(XLM)$0.212733-2.25%
  • nearNEAR Protocol(NEAR)$5.12-1.27%
  • bitcoin-cashBitcoin Cash(BCH)$310.33-8.45%
  • uniswapUniswap(UNI)$8.97-9.74%
  • litecoinLitecoin(LTC)$71.20-0.64%
  • CantonCanton(CC)$0.131061-5.18%
  • hedera-hashgraphHedera(HBAR)$0.11740923.96%
  • Ethena USDeEthena USDe(USDE)$1.000.00%
  • avalanche-2Avalanche(AVAX)$10.50-4.49%
  • suiSui(SUI)$1.18-5.45%
  • the-open-networkGram (prev. Toncoin)(GRAM)$1.662.34%
  • daiDai(DAI)$1.000.02%
  • USD1USD1(USD1)$1.000.00%
  • BittensorBittensor(TAO)$306.15-7.28%
  • BitwayBitway(BTW)$1.2710.50%
  • quant-networkQuant(QNT)$234.9343.67%
  • shiba-inuShiba Inu(SHIB)$0.000006-4.88%
  • Global DollarGlobal Dollar(USDG)$1.000.01%
  • crypto-com-chainCronos(CRO)$0.064855-4.53%
  • tether-goldTether Gold(XAUT)$4,155.29-2.90%
  • paypal-usdPayPal USD(PYUSD)$1.00-0.01%
  • MemeCoreMemeCore(M)$1.17-2.80%
  • EthenaEthena(ENA)$0.263660-4.17%
  • OndoOndo(ONDO)$0.52-4.11%
  • Ripple USDRipple USD(RLUSD)$1.000.01%
  • okbOKB(OKB)$117.57-3.70%
  • Circle USYCCircle USYC(USYC)$1.140.00%
  • Pump.funPump.fun(PUMP)$0.00502111.73%
  • BlackRock USD Institutional Digital Liquidity FundBlackRock USD Institutional Digital Liquidity Fund(BUIDL)$1.000.00%
  • aaveAave(AAVE)$147.88-5.41%
  • Ondo US Dollar YieldOndo US Dollar Yield(USDY)$1.150.07%
TradePoint.io
  • Main
  • AI & Technology
  • Stock Charts
  • Market & News
  • Business
  • Finance Tips
  • Trade Tube
  • Blog
  • Shop
No Result
View All Result
TradePoint.io
No Result
View All Result

Google AI Introduces Agent Payments Protocol (AP2): An Open Protocol for Interoperable AI Agent Checkout Across Merchants and Wallets

September 17, 2025
in AI & Technology
Reading Time: 10 mins read
A A
Google AI Introduces Agent Payments Protocol (AP2): An Open Protocol for Interoperable AI Agent Checkout Across Merchants and Wallets
ShareShareShareShareShare

Your shopping agent auto-purchases a $499 Pro plan instead of the $49 Basic tier—who’s on the hook: the user, the agent’s developer, or the merchant? This trust gap is a primary blocker for agent-led checkout on today’s payment rails. Google’s Agent Payments Protocol (AP2) addresses it with an open, interoperable specification for agent-initiated payments, defining a cryptographically verifiable common language so any compliant agent can transact with any compliant merchant globally.

Google’s Agent Payments Protocol (AP2) is an open, vendor-neutral specification for executing payments initiated by AI agents with cryptographic, auditable proof of user intent. AP2 extends existing open protocols—Agent2Agent (A2A) and Model Context Protocol (MCP)—to define how agents, merchants, and payment processors exchange verifiable evidence across the “intent → cart → payment” pipeline. The goal is to close the trust gap in agent-led commerce without fragmenting the payments ecosystem.

https://github.com/google-agentic-commerce/AP2

Why do agents need a payments protocol?

Today’s rails assume a human is the one clicking “buy” on a trusted surface. When an autonomous or semi-autonomous agent initiates checkout, merchants and issuers face three unresolved questions: (1) was the user’s authority truly delegated (authorization), (2) does the request reflect what the user meant and approved (authenticity), and (3) who is responsible if something goes wrong (accountability). AP2 formalizes the data, cryptography, and messaging to answer those questions consistently across providers and payment types.

How does AP2 establish trust?

AP2 uses Verifiable Credentials (VCs)—tamper-evident, cryptographically signed digital objects—to carry evidence through a transaction. The protocol standardizes three mandate types:

  • Intent Mandate (human-not-present): captures the constraints under which an agent may transact (e.g., brand/category, price caps, timing windows), signed by the user.
  • Cart Mandate (human-present): binds the user’s explicit approval to a merchant-signed cart (items, amounts, currency), producing non-repudiable proof of “what you saw is what you paid.”
  • Payment Mandate: conveys to networks/issuers that an AI agent was involved, including modality (human-present vs not present) and risk-relevant context.

These VCs form an audit trail that unambiguously links user authorization to the final charge request.

What are the core roles and trust boundaries?

AP2 defines a role-based architecture to separate concerns and minimize data exposure:

  • User delegates a task to an agent.
  • User/Shopping Agent (the interface the user interacts with) interprets the task, negotiates carts, and collects approvals.
  • Credentials Provider (e.g., wallet) holds payment methods and issues method-specific artifacts.
  • Merchant Endpoint exposes catalog/quoting and signs carts.
  • Merchant Payment Processor constructs the network authorization object.
  • Network & Issuer evaluate and authorize the payment.

Human-present vs human-not-present: what changes on the wire?

AP2 defines clear, testable flows:

  • Human-present: the merchant signs a final cart; the user approves it in a trusted UI, generating a signed Cart Mandate. The processor submits the network authorization alongside the Payment Mandate. If needed, step-up (e.g., 3DS) occurs on a trusted surface.
  • Human-not-present: the user pre-authorizes an Intent Mandate (e.g., “buy when price < $100”); the agent later converts it to a Cart Mandate when conditions are satisfied, or the merchant can force re-confirmation.

How does AP2 compose with A2A and MCP?

AP2 is specified as an extension to A2A (for inter-agent messaging) and interoperates with MCP (for tool access) so developers can reuse established capabilities for discovery, negotiation, and execution. AP2 specializes the payments layer—standardizing mandate objects, signatures, and accountability signals—while leaving collaboration and tool invocation to A2A/MCP.

Which payment methods are in scope?

The protocol is payment-method agnostic. The initial focus covers common pull-based instruments (credit/debit cards), with roadmap support for real-time push transfers (e.g., UPI, PIX) and digital assets. For the web3 path, Google and partners have released an A2A x402 extension to operationalize agent-initiated crypto payments, aligning x402 with AP2’s mandate constructs.

What does this look like for developers?

Google has published a public repository (Apache-2.0) with reference documentation, Python types, and runnable samples:

  • Samples demonstrate human-present card flows, an x402 variant, and Android digital payment credentials, showing how to issue/verify mandates and move from agent negotiation to network authorization.
  • Types package: core protocol objects are available under src/ap2/types for integration.
  • Framework choice: while samples use Google’s ADK and Gemini 2.5 Flash, AP2 is framework-agnostic; any agent stack can generate/verify mandates and speak the protocol.

How does AP2 address privacy and security?

AP2’s role separation ensures sensitive data (e.g., PANs, tokens) remains with the Credentials Provider and never needs to flow through general-purpose agent surfaces. Mandates are signed with verifiable identities and can embed risk signals without exposing full credentials to counterparties. This aligns with existing controls (e.g., step-up authentication) and provides networks with explicit markers of agent involvement to support risk and dispute logic.

What about ecosystem readiness?

Google cites collaboration with 60+ organizations, spanning networks, issuers, gateways, and technology vendors (e.g., American Express, Mastercard, PayPal, Coinbase, Intuit, ServiceNow, UnionPay International, Worldpay, Adyen). The objective is to avoid one-off integrations by aligning on common mandate semantics and accountability signals across platforms.

Implementation notes and edge cases

  • Determinism over inference: merchants receive cryptographic evidence of what the user approved (cart) or pre-authorized (intent), rather than model-generated summaries.
  • Disputes: the credential chain functions as evidentiary material for networks/issuers; accountability can be assigned based on which mandate was signed and by whom.
  • Challenges: the issuer or merchant can trigger step-up; AP2 requires challenges to be completed on trusted surfaces and linked to the mandate trail.
  • Multiple agents: when more than one agent participates (e.g., travel metasearch + airline + hotel), A2A coordinates tasks; AP2 ensures each cart is merchant-signed and user-authorized before payment submission.

What comes next?

The AP2 team plans to evolve the spec in the open and continue adding reference implementations, including deeper integrations across networks and web3, and alignment with standards bodies for VC formats and identity primitives. Developers can start today by running the sample scenarios, integrating mandate types, and validating flows against their agent/merchant stacks.

Summary

AP2 gives the agent ecosystem a concrete, cryptographically grounded way to prove user authorization, bind it to merchant-signed carts, and present issuers with an auditable record—without locking developers into a single stack or payment method. If agents are going to buy things on our behalf, this is the kind of evidence trail the payments system needs.

YOU MAY ALSO LIKE

Fireworks AI Releases Ember-1: A Post-Trained Kimi K3 That Uses About 40% Fewer Tokens

You Can Now Preorder The Tiny Boox Picco Ereader


Check out the GitHub Page, Project Page and Technical details. Feel free to check out our GitHub Page for Tutorials, Codes and Notebooks. Also, feel free to follow us on Twitter and don’t forget to join our 100k+ ML SubReddit and Subscribe to our Newsletter.


Asif Razzaq is the CEO of Marktechpost Media Inc.. As a visionary entrepreneur and engineer, Asif is committed to harnessing the potential of Artificial Intelligence for social good. His most recent endeavor is the launch of an Artificial Intelligence Media Platform, Marktechpost, which stands out for its in-depth coverage of machine learning and deep learning news that is both technically sound and easily understandable by a wide audience. The platform boasts of over 2 million monthly views, illustrating its popularity among audiences.

Credit: Source link

ShareTweetSendSharePin

Related Posts

Fireworks AI Releases Ember-1: A Post-Trained Kimi K3 That Uses About 40% Fewer Tokens
AI & Technology

Fireworks AI Releases Ember-1: A Post-Trained Kimi K3 That Uses About 40% Fewer Tokens

September 28, 2026
You Can Now Preorder The Tiny Boox Picco Ereader
AI & Technology

You Can Now Preorder The Tiny Boox Picco Ereader

September 28, 2026
20 Agentic Use Cases of TypeSafe AI’s Jev
AI & Technology

20 Agentic Use Cases of TypeSafe AI’s Jev

September 28, 2026
Google Research Introduces an AI Video Co-Director: 4 Agentic Frameworks for Coherent, Minutes-Long Video Generation
AI & Technology

Google Research Introduces an AI Video Co-Director: 4 Agentic Frameworks for Coherent, Minutes-Long Video Generation

September 28, 2026
Next Post
Good Samaritans rescue deputies in Texas crash

Good Samaritans rescue deputies in Texas crash

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Search

No Result
View All Result
Alliant Energy Stock: This Utility Company May Energize Portfolio (NASDAQ:LNT)

Alliant Energy Stock: This Utility Company May Energize Portfolio (NASDAQ:LNT)

September 26, 2026
Urgent manhunt for wife in officer’s death

Urgent manhunt for wife in officer’s death

September 27, 2026
She’s Paying Her Boyfriend’s Debt For Free Rent

She’s Paying Her Boyfriend’s Debt For Free Rent

September 23, 2026

About

Learn more

Our Services

Legal

Privacy Policy

Terms of Use

Bloggers

Learn more

Article Links

Contact

Advertise

Ask us anything

©2020- TradePoint.io - All rights reserved!

Tradepoint.io, being just a publishing and technology platform, is not a registered broker-dealer or investment adviser. So we do not provide investment advice. Rather, brokerage services are provided to clients of Tradepoint.io by independent SEC-registered broker-dealers and members of FINRA/SIPC. Every form of investing carries some risk and past performance is not a guarantee of future results. “Tradepoint.io“, “Instant Investing” and “My Trading Tools” are registered trademarks of Apperbuild, LLC.

This website is operated by Apperbuild, LLC. We have no link to any brokerage firm and we do not provide investment advice. Every information and resource we provide is solely for the education of our readers. © 2020 Apperbuild, LLC. All rights reserved.

No Result
View All Result
  • Main
  • AI & Technology
  • Stock Charts
  • Market & News
  • Business
  • Finance Tips
  • Trade Tube
  • Blog
  • Shop

© 2023 - TradePoint.io - All Rights Reserved!