The global landscape of digital transactions is experiencing a profound structural bifurcation as autonomous artificial intelligence agents step into the realm of everyday consumer spending. While the underlying technological capability to power machine-to-machine and agent-to-merchant commerce exists globally, the commercial reality of how these transactions are executed, regulated, and trusted is splitting dramatically across geographic lines. Europe has embraced a regulatory-first architecture, leveraging existing and evolving payment frameworks to launch live, end-to-end agentic transactions across dozens of major financial institutions. Conversely, the United States remains ensnared in a regulatory vacuum, stalled by unresolved liability frameworks, ambiguous federal agency mandates, and deep-seated caution from both merchants and consumers.
This divergence highlights a fundamental tension in modern financial technology: whether innovation should outpace legal certainty, or if a structured regulatory framework is a necessary prerequisite for scaling transformative payment mechanisms. As automated shopping assistants, algorithmic buyers, and autonomous financial agents shift from theoretical concepts to production-ready software, the contrasting approaches of the Old and New Worlds offer a compelling case study in the friction of digital transformation.
The European Regulatory Backbone and Production-Ready Deployments
Europe’s rapid progression into agentic commerce has not occurred in a regulatory vacuum; rather, it has been deliberately channeled through the European Union’s evolving financial compliance structures. Chief among these is the Payment Services Directive 3 and the Payment Services Regulation (PSD3/PSR) framework. Originally conceptualized with a traditional paradigm in mind—namely, that a conscious human being is actively present at the keyboard during transaction initiation—this regulatory environment has forced European financial institutions to adapt rapidly.
Rather than halting innovation, this compliance-heavy environment has catalyzed a strategic pivot. European banks and payment processors are rapidly moving beyond traditional Know Your Customer (KYC) protocols to develop and implement a new digital imperative: Know Your Agent (KYA). This ensures that autonomous software entities operating on behalf of human users can be securely authenticated, tracked, and verified.
The fruits of this structured approach are already visible in live production environments. Major European financial institutions, including Santander, ING, Worldline, and Mastercard, have successfully executed live, end-to-end payments driven entirely by AI agents. A notable milestone was reached on July 2, 2026, when ING, Worldline, and Visa completed a landmark agentic payment in Germany. This transaction utilized Visa Payment Passkeys for advanced biometric authentication, proving that secure, automated transaction flows can be successfully integrated into standard consumer banking infrastructure without sacrificing compliance or security.
Simultaneously, Mastercard has taken sweeping network-level action. The financial giant has enabled all of its issuers across Europe for Agent Pay. To support this massive infrastructural rollout, Mastercard established a dedicated Centre of Excellence for Innovation in Lisbon, Portugal, designed specifically to accelerate the development, testing, and deployment of AI-driven payment experiences.
Industry leaders in Europe view this transition not as a speculative gamble, but as a natural evolution of digital payments. Kelly Devine, President of Mastercard Europe, emphasized the magnitude of this shift, noting that agentic payments fundamentally alter how commerce is initiated and executed. According to Devine, the deployment of Mastercard Agent Pay applies the foundational pillars that have anchored the network for decades—security, trust, interoperability, and global scale—to a new era of AI-enabled commerce. Echoing this sentiment, Madalena Cascais Tomé of the Worldline Executive Committee declared that agentic commerce has officially crossed the threshold from theory into daily production readiness.
The United States Liability Vacuum and Market Paralysis
In stark contrast to the momentum seen across the Atlantic, the United States market presents a paradox of technological abundance and commercial paralysis. While the US is home to many of the world’s leading artificial intelligence developers and boasts a proliferation of advanced agent platforms, merchant adoption of agentic checkout systems remains virtually non-existent.
The primary barrier holding back the US market is not a lack of technical capability or consumer interest in convenience. Rather, it is a profound and unresolved crisis regarding liability. If an autonomous AI agent makes a fraudulent purchase, misinterprets a consumer’s vague instructions, or falls victim to an adversarial prompt-injection attack, who absorbs the financial loss? Under current US banking laws, this question has no clear answer.
Federal regulatory bodies have struggled to keep pace with the rapid evolution of generative AI. The Office of Inspector General (OIG) for the US Treasury has openly flagged significant ambiguities within Regulation E—the statute governing electronic fund transfers—regarding how agent-authorized transactions should be classified and protected. Legislative efforts have similarly missed the mark. The AI AGENT Act, introduced in July 2026, focuses narrowly on defining and regulating the fiduciary duties of artificial intelligence systems, largely sidestepping the critical, nuts-and-bolts question of liability allocation when automated financial misexecution occurs.
Faced with this regulatory silence and government inaction, the US private sector has been forced to contemplate self-regulation. The Consumer Bankers Association has recently recommended that the financial services industry take matters into its own hands by developing its own private network rules and bilateral agreements to govern autonomous agent interactions.
This environment of legal uncertainty has prompted stark warnings from cybersecurity and infrastructure leaders. Stephanie Cohen, Chief Security Officer at Cloudflare, captured the architectural dilemma facing the US market by pointing out that the foundational architecture of the internet was engineered strictly for human-to-human and human-to-system interactions. Consequently, Cohen argues, the digital infrastructure of the future must be completely re-architected to accommodate autonomous, machine-to-machine interactions safely.
The Structural Irony: Consumer Hesitance Meets Merchant Risk Aversion
The divergence between European progression and US stagnation is further underscored by a fascinating structural irony playing out across digital storefronts. According to traffic data aggregated by Hypertrade, the digital economy is already experiencing a staggering 4,700% year-over-year increase in AI-generated traffic directed toward online retail sites. Bots, scrapers, and intelligent personal assistants are scouring the web in unprecedented volumes. Yet, despite this massive surge in machine traffic, fully realized agentic commerce—where an AI agent completes the financial transaction on behalf of a human—accounts for less than 1% of total US e-commerce.
If the underlying infrastructure is robust enough to handle the traffic, why is the American merchant ecosystem exercising such extreme caution? The answer lies in a profound psychological and financial disconnect between consumers and retailers.
Data from the Visa Earning Trust report reveals that only 23% of US consumers currently express trust in generative artificial intelligence to independently handle and execute payment transactions on their behalf. The vast majority of shoppers remain deeply uncomfortable relinquishing financial control to algorithms, fearing unauthorized purchases, hallucinations, or data privacy breaches.
On the supply side, the hesitation is equally intense, driven primarily by risk management concerns. Research published by PYMNTS Intelligence indicates that an overwhelming 93% of US merchants believe that the AI provider or platform developer should bear the full financial liability for any incorrect or disputed purchases made by an agent. Tech companies, conversely, are unwilling to underwrite retail credit risk, creating an impasse where no stakeholder is willing to hold the bag for algorithmic errors.
Chronology of the Agentic Commerce Shift
To understand how the global market arrived at this bifurcated reality, it is helpful to trace the rapid timeline of developments leading up to the current state of agentic payments:
- Late 2024 to Early 2025: Generative AI models evolve from conversational text generators into functional software agents capable of executing multi-step workflows, sparking early industry discussions around autonomous shopping.
- Mid-2025: Major technology firms and fintech startups introduce experimental "Agent Pay" protocols, while early retail data shows a massive surge in AI-driven bot traffic visiting e-commerce platforms.
- Late 2025: European regulators begin interpreting the rollout of PSD3/PSR compliance measures through the lens of automated software, prompting European banks to conceptualize "Know Your Agent" (KYA) security frameworks.
- Early 2026: US federal agencies attempt to address AI integration, but reports from the US Treasury OIG highlight glaring ambiguities in Regulation E regarding automated transaction liability, freezing US merchant adoption.
- July 2026: The AI AGENT Act is introduced in the US Congress, focusing on fiduciary duties rather than transaction liability. Simultaneously, in Europe, ING, Worldline, and Visa successfully execute a live agentic payment in Germany using Visa Payment Passkeys, while Mastercard enables all European issuers for Agent Pay and opens its Lisbon Centre of Excellence.
- Present Day: Europe solidifies its position as a live production environment for agentic commerce, while the US market remains stalled in liability debates, consumer skepticism, and calls for private-network rulemaking.
Implications and Broader Economic Outlook
The growing chasm between Europe’s regulatory-backed deployment and the United States’ liability-induced paralysis carries significant long-term implications for the global digital economy.
For Europe, the aggressive pursuit of standardized frameworks like PSD3/PSR and network-level integrations by Mastercard, Visa, and major continental banks positions the region as an early incubator for the next generation of financial technology. By confronting the regulatory friction head-on, European institutions are establishing global templates for identity verification, biometric authorization, and consumer protection in an automated age. While these rules impose initial compliance burdens, they provide the legal certainty that risk-averse enterprises require to scale innovative solutions safely.
For the United States, continued regulatory inertia risks pushing the world’s largest consumer market behind the curve. Without definitive guidance from federal agencies like the Consumer Financial Protection Bureau or clear legislative reform regarding liability allocation, US merchants and financial institutions will likely remain locked in a holding pattern. Until private industry networks can successfully forge a unified self-regulatory consensus—or until federal lawmakers clarify the boundaries of machine liability—the US will continue to witness a yawning gap between its immense technological potential and its cautious commercial reality.
Ultimately, the future of agentic commerce will not be decided solely by the sophistication of artificial intelligence models, but by the strength of the legal and institutional frameworks built to support them. As Europe demonstrates, when the rules of the road are clearly defined, innovation can move swiftly from the drawing board to the checkout line.



