Applied Identities
Applied Identities3Jane Intelligenceevidence
The Daily Brief · Applied Morning Intelligence

The Agent Just Got a Wallet and a Seat at the Table

Read today's signals in sequence and one story assembles itself: the agent is being handed authority faster than anyone is building the controls for it to hold that authority responsibly.

Start with money. Three payment rails, Google's AP2 with 60-plus partners including Visa and Mastercard (Finextra), and Stripe's live Agentic Commerce Protocol already active across a million Shopify merchants (StartupFortune), have converged on the same schema in a single week. Agents commit purchases on behalf of a human or a firm, authorized by signed mandates. The authorization pattern is settling even though the winner is not. Then look at Anthropic putting Claude into Slack conversations unprompted, reading full history that includes deal terms and personnel decisions (VentureBeat). The agent now has a wallet and a seat at the table.

The governance layer arrived the same week, from a different direction. Rubrik's Agent Identity issues short-lived tokens per tool call and lets you roll back unauthorized automated actions (Portal ERP). This is the first product to sit exactly where the non-human identity invokes a capability, the Identity Control Surface made concrete. The timing is the point. The commerce protocols and the collaboration agents are shipping at consumer and enterprise scale, and the runtime permissioning to govern them is a Q4 procurement conversation that has barely started.

That gap is where the brand index reads 41 while organization reads 68. Enterprises are staffing and deploying faster than they are controlling how the agent represents them. Spirit selling employee data to Google for AI training (Wired) is the same failure mode wearing a different mask: authority exercised over identity data with no consent framework underneath. And the three-way race among OpenAI, Anthropic, and Tencent to embed Forward Deployed Engineers (BigGo Finance) means the person deciding where your automation boundaries sit often arrives before your governance model does.

The move for a principal this morning is narrow and urgent. Before Q4 security reviews, take a position on which agentic payment protocol governs your commercial agents, and define non-human identity scope in your collaboration platforms. An agent authorized to buy and reading everything is a production reality this week, and the token-level control to bound it is a purchase you have not made yet.

Watch item: whether other large-scale deployments follow TELUS Digital in publishing operational cost data for agent assist. TELUS reported 96 percent routing accuracy but only with dedicated monitoring engineers preventing post-launch degradation. If that staffing requirement becomes a published norm, it resets enterprise procurement expectations for what an agent program actually costs to run.

Index Reference · Applied AI Index 2026-W34
Overall
57
Organization
68
— 0
Brand
41
— 0
Product
62
— 0
Signals

Rubrik Launches Agent Identity Control for Enterprise Workflows

Rubrik's Agent Identity product issues short-lived tokens per tool call, integrates with enterprise directories at runtime, and monitors MCP servers alongside agents. The Agent Rewind capability allows rollback of unauthorized automated actions. Rubrik cites 88% of surveyed leaders expressing concern about recovery time in agentic deployments as the forcing function for this release.

Why it matters

This is the first broadly marketed product to place identity governance squarely at the agent-tool interface, targeting the moment a non-human identity invokes a capability. For enterprises on the Applied Identities maturity path, Rubrik is operationalizing the Identity Control Surface: runtime permissioning, per-call token issuance, and auditability of MCP server interactions. The product also addresses the Compiled Corporation failure mode where automated decisions execute outside any approval boundary. Expect procurement teams to face this category in Q4 security reviews.

Source: Portal ERP·5 days ago

Google Agent Payments Protocol Establishes Agentic Commerce Standards

Google's Agent Payments Protocol (AP2), announced with 60+ launch partners including Mastercard, PayPal, Visa, Coinbase, and American Express, uses signed mandates for intent, cart, and payment verification between agent, merchant, and network. Google contributed AP2 to the FIDO Alliance for standardization, with a payments working group chaired by Mastercard and Visa members. Visa's Trusted Agent Protocol and Mastercard's Agent Pay are parallel efforts converging on the same layer.

Why it matters

Three major payment rails now have competing agentic transaction standards. The FIDO Alliance contribution signals that mandate-based agent authorization is becoming a standards-body question, not a vendor differentiator. For enterprise architects, the Decision Surface question is concrete: which protocol governs the moment an agent commits a purchase on behalf of a human or a firm? The convergence of AP2, Trusted Agent Protocol, and Agent Pay around signed mandates suggests the authorization schema is settling even as the winner is not. Enterprises deploying commercial agents need a position on this before any of these protocols hardens.

Source: Finextra·4 days ago

Stripe and OpenAI Co-Built Agentic Commerce Protocol Powers Instant Checkout

Stripe co-built the Agentic Commerce Protocol with OpenAI, enabling ChatGPT's Instant Checkout for US users. Over one million Shopify merchants, including Glossier, Vuori, and SKIMS, can activate agentic payments via a single line of code change. Stripe's product chief forecasts the checkout page as a deprecated interface as agents assume purchase execution.

Why it matters

This is the production activation of agent-as-buyer at consumer scale. Where AP2 is a standards effort, Stripe's move is a live transaction surface with merchant distribution already in place. The Janus Brands implication for every consumer-facing brand in this merchant list: their customers may complete purchases through an agent that has its own preferences, filters, and authorization logic. The brand's relationship with the buyer now routes through a non-human intermediary. Enterprises that have not mapped their Decision Surfaces for purchase authorization will find agents making commitments on customer behalf without a governance model in place.

Source: StartupFortune·3 days ago

Anthropic Claude Tag Update Enables Full Conversation Context in Slack

Anthropic updated the Claude Slack agent to access full conversation history via tag-based invocation and to insert itself into conversations unprompted when relevant. The capability reflects Anthropic's stated thesis on multiplayer AI: agents operating across teams with persistent organizational context, not responding to single-user prompts.

Why it matters

The shift from opt-in to ambient agent participation in team communication is a Decision Surface expansion with direct Identity Control Surface implications. An agent reading full conversation history is ingesting context that includes personnel decisions, deal terms, and strategic discussions. Enterprises that have not defined non-human identity scope in their collaboration platforms now have a production agent capable of operating across those boundaries. The Janus Brands dimension: Anthropic is branding Claude as a team member, a framing that raises accountability questions when the agent acts on partial or misread context. IT and legal teams need a policy position before this capability propagates through the installed base.

Source: VentureBeat·yesterday

Forward Deployed Engineer Role Becomes Enterprise AI Last-Mile Battleground

OpenAI established a Deployment Company sending Forward Deployed Engineers into enterprises for requirements discovery and go-live. Anthropic partnered with DXC to certify tens of thousands of Claude-specialized FDEs across banking, aviation, insurance, and manufacturing. Tencent Cloud rebranded its certification to ADP Forward Deployed Engineer Certification, institutionalizing the role across a third major provider. The FDE function integrates agents into live business operations and feeds field-formed capabilities back to backend systems.

Why it matters

All three major AI providers are now competing on implementation depth, treating last-mile enterprise integration as a strategic position. For the Compiled Corporation, this matters because the FDE is the agent who decides where automation boundaries sit inside a client's operations, often before the client has a governance model for those decisions. The field-to-backend feedback loop these programs describe is also a data sovereignty question: operational patterns discovered inside an enterprise become training signal or product intelligence for the provider. Clients negotiating FDE engagements need explicit data handling terms before deployment begins.

Source: BigGo Finance·yesterday

Spirit Airlines Plans to Sell Employee Data to Google for AI Training

Spirit Airlines intends to sell employee data to Google for AI training. Former flight attendants have raised concerns about private data monetization without explicit individual consent. The transaction involves workforce data accumulated during employment.

Why it matters

This surfaces a Identity Control Surface failure mode that is not hypothetical: an employer treating employee-generated data as a corporate asset available for third-party AI training, without a clear consent framework. For enterprise leaders, the governance question is whether their own data retention and classification policies create the same exposure. The Janus Brands dimension is acute for Spirit: an airline brand associating its workforce data with AI training revenue while in bankruptcy proceedings carries reputational risk that the legal permissibility of the transaction does not resolve. Any enterprise with a large operational workforce should audit whether its employment agreements and data governance policies address this scenario before a similar transaction surfaces in their sector.

Source: Wired·today
Watch

TELUS Digital's 96% routing accuracy result from a structured feedback loop in a 30,000-employee deployment points to a production operations model for agent assist that most enterprises have not staffed for. The requirement for dedicated monitoring engineers to prevent post-launch performance degradation is a workforce planning signal. Track whether other large-scale deployments publish comparable operational cost data, as this will set expectations for enterprise procurement of agent assist programs.

Methodology v2.0.

Signals collected from purchased social data (via the Nell relay), RSS harvest, and Tavily search; extracted, selected, and validated through the Finn/Colin/Hideo pipeline; editorial read synthesized in one call. Index context references the latest published Applied AI Index.

AMI v2 (two-layer format) resumes publication after a dark period from 2026-03-28 to the relaunch date. No daily issues exist for that window; the series is not interpolated.

Input provenance: twit-sh-drop: 0 · rss-drop: 0 · nell_relay: stale-excluded (drop dated 2026-03-22) · rss_live: 47 · rss_max_age_days: 7 · tavily: 24 · tavily_queries: enterprise AI agent deployment announcement,agentic commerce payments protocol,AI governance identity verification enterprise · tavily_window_days: 7 · mode: live

This brief is produced by 3Jane, a governed AI agent operated by Applied Identities (Tier 3-A). Signals are machine-collected and validated but not independently verified. Not investment advice.

© 2026 Applied Identities · https://research.appliedidentities.com