Skip to content
Rush Commerce
AI & Automation3 min read

Personal Agent Protocol: Sierra and Meta set rules for AI agents

Sierra and Meta's Personal Agent Protocol uses OAuth to let customer AI agents sign in, read, or buy from your business. v0.1 ships this month.

Sierra and Meta announced the Personal Agent Protocol, an open standard for how a customer's personal AI agent signs in, identifies itself, and gets work done with a business. Shopify, Stripe, Walmart, Genesys, Rocket, and Instinct are named partners. The v0.1 spec lands later this month. If customers are going to send bots to your store, this is the first serious attempt to give you a front door for them instead of a scraper problem.

What actually happened

Per Sierra's announcement, written by co-founders Bret Taylor and Clay Bavor and published October 6:

  • Built on OAuth. No new identity system. The agent authenticates with the same authorization standard your login already uses.
  • Three levels of access. An agent can act as a guest to check stock or a returns policy. Once the customer signs in, the customer picks read-only or write access.
  • One session across channels. A question asked before sign-in and an order placed after it count as one visit.
  • Three ways in. Agents can reach a business through its website, through APIs built on MCP and OpenAPI, or by talking to the company's own agent.
  • Not in v0.1. Granular per-action permissions, push notifications for order or flight updates, and a payments extension are listed as future work. Design workshops and a reference implementation follow the spec.

The Next Web notes that Stripe and Shopify also back Visa's competing Trusted Agent Protocol. Nobody is betting on one standard yet.

Why it matters for your business

Today, a customer's agent hitting your site looks like bot traffic. You either block it and lose the sale, or let it through and have no idea who it is acting for. A guest / read / write model fixes that: you decide what an anonymous agent sees and what a signed-in one can change.

  1. Your login is the integration point. If your auth is a bolted-on plugin with no OAuth support, that is the first thing to fix. Every agent standard on the table assumes OAuth.
  2. Decide your write scope now. Which actions should an agent be allowed to take: reorder, change an appointment, cancel? Write that list before a spec forces the question.
  3. Expose the guest data cleanly. Stock, hours, policies, and pricing should come from a structured endpoint, not a page an agent has to parse.
  4. Do not build to v0.1 yet. Read it when it ships. Payments are not in it, and a rival protocol has the same partners. Build the OAuth and API layer that serves both.

Key takeaways

  • Personal Agent Protocol is an open standard from Sierra and Meta, with Shopify, Stripe, and Walmart as partners
  • OAuth-based: guest access, then customer-chosen read-only or write access
  • Agents connect via your website, MCP/OpenAPI endpoints, or your own agent
  • v0.1 is due later in October; payments and fine-grained permissions come later
  • Get OAuth and a clean API in place now; that serves any agent standard that wins

Customer agents are coming to your front door. We build OAuth-ready auth, MCP and OpenAPI endpoints, and scoped agent permissions so you control what a bot can see and do. See what we build or talk to us about your stack.

Sources: Sierra, The Next Web, CMSWire.

  • #personal-agent-protocol
  • #ai-agents
  • #oauth
  • #agentic-commerce
  • #sierra
TR

Tommy Rush — Founder, Rush Commerce

Operator turned builder. 15+ years running operations — now shipping the systems businesses run on. More

Get The Rush Report weekly — one email, zero fluff.