Ask Runable forDesign-Driven General AI AgentTry Runable For Free
Runable
Back to Blog
Technology8 min read

Know your agent: building the foundation of autonomous commerce | TechRadar

Identity verification and "Know Your Agent" protocols are essential for secure AI commerce Discover insights about know your agent: building the foundation of a

TechnologyInnovationBest PracticesGuideTutorial
Know your agent: building the foundation of autonomous commerce | TechRadar
Listen to Article
0:00
0:00
0:00

Know your agent: building the foundation of autonomous commerce | Tech Radar

Overview

News, deals, reviews, guides and more on the newest computing gadgets

Start exploring exclusive deals, expert advice and more

Details

Unlock and manage exclusive Techradar member rewards.

Unlock instant access to exclusive member features.

Get full access to premium articles, exclusive features and a growing list of member rewards.

Know your agent: building the foundation of autonomous commerce

Identity verification and "Know Your Agent" protocols are essential for secure AI commerce

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works.

Artificial intelligence has officially entered its execution phase. After years of experimentation, businesses are rapidly deploying AI not just to analyze data, but to act on it.

At the forefront of this shift are AI agents, autonomous systems designed to execute complex tasks, automate workflows, and interact with other digital systems on our behalf.

Their adoption is accelerating at an incredible pace, with a recent Mc Kinsey study finding that 62% of organizations are already experimenting with them. It’s easy to see why, as Agentic AI offers a relatively straightforward path to embedding powerful automation deep into business processes.

However, as these systems evolve from passive tools into autonomous agents, we are entering a new era of digital risk. The conversation is no longer just about building smarter agents, but whether the entire agent economy can function without a trust layer underneath it. Identity verification has evolved beyond being a basic security feature into the infrastructure that makes autonomous commerce possible at all.

When an AI can access sensitive databases, interact with third-party systems, and execute commands, a critical question emerges: how do you know who, or what, is really on the other end of that API call? Without a robust framework for agent identity and accountability, true agentic commerce will not be possible.

When AI agents start shopping for us, retail’s identity stack needs a rewrite

AI agents now commit and conceal cybercrimes on their own

AI agents won’t transform commerce until retailers redesign how decisions get made

The appeal of agentic AI is its autonomy, but this is also its greatest risk. An unchecked or compromised AI agent operating within a corporate network can become a powerful vector for malicious activity. These risks are not new, but are a direct extension of existing cyber threats, amplified by the speed and scale of AI.

The most defining threat vector in the era of agentic AI is prompt injection. This is unique to AI agents as it weaponizes the very natural language capabilities that make them so powerful. Unlike traditional cyberattacks that rely on exploiting software bugs or cracking passwords, prompt injection bypasses standard security perimeters by feeding maliciously crafted text directly into an agent's processing stream.

This essentially tricks the AI into overriding its core system instructions and executing the attacker’s commands as if they were legitimate tasks. In an enterprise environment where agents hold permissions to access CRMs, process invoices, or alter databases, a successful injection can instantly turn a helpful digital assistant into an undetected insider threat.

Through prompt injection, agents can be instructed to exfiltrate data or escalate their privileges. An agent designed to access a customer database for legitimate analysis could, if compromised, be instructed to copy and transmit that entire database to an external server. Similarly, privilege escalation becomes a major concern, as an agent with limited permissions could probe the network for vulnerabilities or exploit a flaw to grant itself higher levels of access, effectively becoming a rogue administrator.

AI-to-AI interactions present a new frontier of security risk. As one business’s AI agents begin to interact with agents from partners or customers, the potential for supply-chain compromise grows exponentially. Without a way to verify the identity of the interacting agent, every AI-to-AI connection becomes a potential security blind spot.

Why enterprises need governance frameworks for agentic AI

Your security team doesn’t know about half its users

In the emerging agent economy, trust hinges on answering three questions, only two of which today's standards meaningfully address: “who is this agent?” (addressed by identity primitives like W3C DIDs, increasingly applied to agents), “does this agent have authorization to spend this money on a user's behalf?” (frameworks such as FIDO Alliance-stewarded standards such as AP2 and Verifiable Intent, contributed by Google and Mastercard), and finally “what is this agent's reputation and track record?”, a question the current standards stack leaves open.

Together, they form the essential trust and payment stack required to move agentic commerce from experimental sandboxes to mainstream, high-value transactions. Zero trust architecture is also more critical than ever for securing systems against agentic threats. An agent's identity must be re-verified for every single transaction or request, and its permissions should be limited to the absolute minimum required for its specific task, based on the principle of least privilege. This means even if a trusted agent is compromised, its ability to cause widespread damage is severely restricted.

This same logic extends well beyond the corporate perimeter, in both directions. On one side, AI agents are beginning to transact on behalf of consumers: booking, buying, paying, returning. On the other, businesses are deploying agents to fulfil those same orders, onboard new customers, automate supply chains, and run entire back-office functions. What's emerging is a new trust triangle between consumers, businesses, and agents, operating simultaneously on both sides of every interaction.

In that world, agent identity becomes a commercial problem as much as a security one. A business needs to know that the agent placing an order holds a valid, scoped mandate from a real human who authorized it to act. But equally, a consumer's agent needs confidence that the business agent fulfilling that order is legitimate, authorized, and traceable. Trust has to flow in both directions, and at machine speed. That's a verification challenge of a fundamentally different order to anything we've dealt with before, and one the industry is only beginning to standardize through frameworks like FIDO's Agentic Payments Protocol. Getting KYA right is foundational to enabling a function agent economy.

Finally, businesses need systems that continuously monitor agent behavior to create a baseline of normal activity, making it possible to spot anomalous actions. If an agent suddenly attempts something outside its regular function, such as accessing a new database, connecting to an unusual IP address, or executing commands at a much higher frequency, this behavior should instantly trigger an alert and, potentially, an automatic suspension of the agent’s permissions.

Some technology leaders hold the view that strict security measures are a barrier to innovation, however in reality the opposite is true. By building trust and safeguards into AI agents from the ground up, businesses can innovate without fear. They can confidently deploy agentic solutions to drive efficiency, reduce operational costs, and unlock new revenue streams, all without exposing themselves to the catastrophic risks of uncontrolled autonomy.

The agentic AI era is here, and it has the potential to reshape how enterprises operate. Autonomy without oversight is liability, but autonomy with verified identity, scoped mandates, and continuous trust signals is the foundation of a new commercial layer. As agent architectures mature, trust certification will become a precondition for being transacted with at all. KYA isn't a security cost. It's how you stay in the game.

This article was produced as part of Tech Radar Pro Perspectives, our channel to feature the best and brightest minds in the technology industry today.

The views expressed here are those of the author and are not necessarily those of Tech Radar Pro or Future plc. If you are interested in contributing find out more here: https://www.techradar.com/pro/perspectives-how-to-submit

You must confirm your public display name before commenting

1 Microsoft extends Windows 10 support for another year to October 2027

29 Reasons your SEO rankings are up, but traffic is down

3 Why your streaming app detects your VPN – and how to avoid it for the World Cup 2026

4 Steam Machine is ridiculously expensive — here are 5 PCs (and a $1000 laptop) that easily surpass Valve’s controversial gaming console

5 Stop Killing the Internet: inside the global movement that wants to save the open web

Tech Radar is part of Future US Inc, an international media group and leading digital publisher. Visit our corporate site.

© Future US, Inc. Full 7th Floor, 130 West 42nd Street, New York, NY 10036.

Key Takeaways

  • News, deals, reviews, guides and more on the newest computing gadgets
  • Start exploring exclusive deals, expert advice and more
  • Unlock and manage exclusive Techradar member rewards
  • Unlock instant access to exclusive member features
  • Get full access to premium articles, exclusive features and a growing list of member rewards

Cut Costs with Runable

Cost savings are based on average monthly price per user for each app.

Which apps do you use?

Apps to replace

ChatGPTChatGPT
$20 / month
LovableLovable
$25 / month
Gamma AIGamma AI
$25 / month
HiggsFieldHiggsField
$49 / month
Leonardo AILeonardo AI
$12 / month
TOTAL$131 / month

Runable price = $9 / month

Saves $122 / month

Runable can save upto $1464 per year compared to the non-enterprise price of your apps.