Agentic payments are arriving before payment authority has an owner.
At LangChain Interrupt there was a constant return to a payment question for agentic AI: what to do with AI agents that need to spend money. Privy said the payment question kept coming up. Harrison Chase pointed at centralized least privilege, audit trails, and dynamic policies as the path that probably beats static allowlists.
The wallet signs. The runtime decides.
So let me just repeat that. The payment question that’s come up for agentic commerce, AI agents making payments, is delegated spend. And spending money, even as a new tool call, is not simply another tool call. It creates liabilities, dispute paths, budget pressure, user trust issues, procurement weirdness, and an audit trail the business needs to defend after the fact.
The Spending Bug Has a Perfect UX












