Access
Install
npx -y @visaacceptance/mcpTry itExperimental
See what an agent can do with Visa Intelligent Commerce before you ever sign up. Pick a story: recorded sessions replay real probe-harness transcripts; commands tagged live-capable can re-run against the real endpoint from our edge, right now (▶ run live — the exact same request, live and recorded lines always labeled); sandboxed self-drive sessions are designed and gated (docs/TRY-IT.md).
$curl -s https://api.visa.com/vdp/helloworld # keyless → structured credential challengerecorded session — replayed, not liveVerified integrations
No integration evidence found in our corpus for this product yet — that means none was found, never that it doesn’t integrate.
By theme — the product's score on each story themeBy theme
Agent checkout — stories about agent checkout in this arenaAgent checkoutevidence →
Stories about agent checkout in this arena
Agent discovery — stories about agent discovery in this arenaAgent discoveryevidence →
Stories about agent discovery in this arena
Agenticness — how well agents can access and operate the productAgenticnessevidence →
How well agents can access and operate the product
Automation depth — how much of the product can run unattendedAutomation depthevidence →
How much of the product can run unattended
Fees economics — stories about fees economics in this arenaFees economicsevidence →
Stories about fees economics in this arena
Merchant enablement — stories about merchant enablement in this arenaMerchant enablementevidence →
Stories about merchant enablement in this arena
Openness — open source, data portability, and self-hosting storiesOpennessevidence →
Open source, data portability, and self-hosting stories
Order lifecycle — stories about order lifecycle in this arenaOrder lifecycleevidence →
Stories about order lifecycle in this arena
Payment credentials — stories about payment credentials in this arenaPayment credentialsevidence →
Stories about payment credentials in this arena
Privacy posture — data-handling and privacy storiesPrivacy postureevidence →
Data-handling and privacy stories
Protocol openness — stories about protocol openness in this arenaProtocol opennessevidence →
Stories about protocol openness in this arena
Refunds disputes — stories about refunds disputes in this arenaRefunds disputesevidence →
Stories about refunds disputes in this arena
Trust safety — stories about trust safety in this arenaTrust safetyevidence →
Stories about trust safety in this arena
Story verdicts — every judged story with its evidenceStory verdicts
What’s free: 3 free · 0 paid · 2 enterprise · 26 not stated in evidence
Follow the green: where the map greys out is where Visa Intelligent Commerce stops today. ✓ full · ~ partial · ! disputed · — none · n/a not applicable.
Agent checkout — stories about agent checkout in this arenaAgent checkout
Stories about agent checkout in this arena
My agent can create and update a cart or order draft through a documented protocol call
~6/10
My agent can complete a purchase end-to-end — checkout session, delegated payment credential, confirmed order
✓8/10
Buyers can complete purchases of my products inside chat and assistant surfaces (ChatGPT, Claude, Gemini, Copilot and peers)
~5/10
Build against a versioned commerce protocol with a published schema and conformance or validation tooling
~5/10
Agent discovery — stories about agent discovery in this arenaAgent discovery
Stories about agent discovery in this arena
My agent can programmatically search products or services across merchants — keylessly or with self-service credentials, no private partnership required
n/an/a
Read machine-readable offer data — price, availability, variants, checkout links — for any listed product or service
n/an/a
Publish my product or service catalog into agent surfaces through a documented feed or import API so AI agents can discover what I sell
n/an/a
My agent can discover payable services and APIs through a published directory or discovery index
~5/10
Agenticness — how well agents can access and operate the productAgenticness
How well agents can access and operate the product
API surface
Drive the product through a documented public API
✓8/10
unlocks → Webhooks · Official CLI
Subscribe to events via webhooks
—–
Build against official SDKs
✓8/10
Issue scoped/least-privilege API credentials for an agent
~7/10
Connect an agent via an official MCP server
✓7/10
Download a machine-readable API spec (OpenAPI or equivalent)
~6/10
unlocks → Interactive API docs
Rely on versioned APIs with a documented deprecation policy
~3/10
Test against a sandbox environment without touching production data
✓8/10
Explore an interactive API reference with runnable examples
—0/10
Docs for agents
Point an agent at llms.txt or agent-oriented docs
✓9/10
Agentic features
Delegate tasks to a built-in AI assistant inside the product
n/an/a
Operate the product with natural-language commands
~6/10
Plug MCP servers into this product so it can use their tools
n/an/a
Get AI-generated insights and suggestions from my data inside the product
—–
Set up automations that run autonomously in the background
~5/10
Automation depth — how much of the product can run unattendedAutomation depth
How much of the product can run unattended
Fees economics — stories about fees economics in this arenaFees economics
Stories about fees economics in this arena
Merchant enablement — stories about merchant enablement in this arenaMerchant enablement
Stories about merchant enablement in this arena
Orders are attributed to the originating agent and I can report on or filter transactions by agent
~4/10
I have a documented self-serve path to start accepting agent traffic — enable a setting, sign an agreement, or publish an endpoint
~7/10
Rate-limit, allow, or deny specific agents and agent platforms accessing my catalog and checkout
~5/10
Openness — open source, data portability, and self-hosting storiesOpenness
Open source, data portability, and self-hosting stories
Order lifecycle — stories about order lifecycle in this arenaOrder lifecycle
Stories about order lifecycle in this arena
Payment credentials — stories about payment credentials in this arenaPayment credentials
Stories about payment credentials in this arena
Hand my agent a scoped, limited-use payment credential — amount limits, expiry, merchant restrictions — instead of a raw card number
✓9/10
Monetize an API or service with HTTP 402 machine payments that agents pay per call without a checkout UI
~5/10
Settle agent-initiated payments in stablecoins over documented rails
—0/10
Provision a wallet my agent holds and spends from — funded and controlled by me, with balance visibility
~5/10
Privacy posture — data-handling and privacy storiesPrivacy posture
Data-handling and privacy stories
Protocol openness — stories about protocol openness in this arenaProtocol openness
Stories about protocol openness in this arena
Refunds disputes — stories about refunds disputes in this arenaRefunds disputes
Stories about refunds disputes in this arena
Trust safety — stories about trust safety in this arenaTrust safety
Stories about trust safety in this arena
Agents identify themselves verifiably — registered profiles, signatures, or trust tiers — so I can tell trusted agent traffic from anonymous bots
✓8/10
Sensitive agent spending requires my documented approval — a confirmation step, signed mandate, or per-purchase consent — before money moves
✓8/10
The fraud, liability, and chargeback rules for agent-initiated transactions are documented so I know who bears the risk
~3/10
Set per-agent spend caps and usage limits and revoke an agent's payment authority instantly
~7/10
Sorted by importance (agentic first) (high → low) · 56/56 stories · click a row’s chevron for the rationale and evidence
Drive the product through a documented public API G Agent access | ai-native user | Agenticness — how well agents can access and operate the productAgenticness | 3 | full | 8/10 | Tprobed | |
Connect an agent via an official MCP server G Agent access | ai-native user | Agenticness — how well agents can access and operate the productAgenticness | 3 | full | 7/10 | Tprobed | |
Delegate tasks to a built-in AI assistant inside the product G Agentic features | ai-native user | Agenticness — how well agents can access and operate the productAgenticness | 3 | n/a | untested | none yet | |
Plug MCP servers into this product so it can use their tools G Agent access | ai-native user | Agenticness — how well agents can access and operate the productAgenticness | 3 | n/a | untested | none yet | |
Point an agent at llms.txt or agent-oriented docs G Agent access | ai-native user | Agenticness — how well agents can access and operate the productAgenticness | 2 | full | 9/10 | Tprobed | |
Build against official SDKs G Agent access | ai-native user | Agenticness — how well agents can access and operate the productAgenticness | 2 | full | 8/10 | Tprobed | |
Issue scoped/least-privilege API credentials for an agent G Agent access | ai-native user | Agenticness — how well agents can access and operate the productAgenticness | 2 | partial | 7/10 | Xcommunity | |
Download a machine-readable API spec (OpenAPI or equivalent) G Api quality | ai-native user | Agenticness — how well agents can access and operate the productAgenticness | 2 | partial | 6/10 | Tprobed | |
Operate the product with natural-language commands G Agentic features | ai-native user | Agenticness — how well agents can access and operate the productAgenticness | 2 | partial | 6/10 | Tprobed | |
Run the product headlessly / in CI for automation G Agent access | ai-native user | Agenticness — how well agents can access and operate the productAgenticness | 2 | partial | 6/10 | Tprobed | |
Set up automations that run autonomously in the background G Agentic features | ai-native user | Agenticness — how well agents can access and operate the productAgenticness | 2 | partial | 5/10 | Cclaimed | |
Rely on versioned APIs with a documented deprecation policy G Api quality | ai-native user | Agenticness — how well agents can access and operate the productAgenticness | 2 | partial | 3/10 | Cclaimed | |
Explore an interactive API reference with runnable examples G Api quality | ai-native user | Agenticness — how well agents can access and operate the productAgenticness | 2 | none | 0/10 | ||
Use an official CLI G Agent access | ai-native user | Agenticness — how well agents can access and operate the productAgenticness | 2 | none | 0/10 | ||
Get AI-generated insights and suggestions from my data inside the product G Agentic features | ai-native user | Agenticness — how well agents can access and operate the productAgenticness | 2 | none | untested | none yet | |
Subscribe to events via webhooks G Agent access | ai-native user | Agenticness — how well agents can access and operate the productAgenticness | 2 | none | untested | none yet | |
Test against a sandbox environment without touching production data G Api quality | ai-native user | Agenticness — how well agents can access and operate the productAgenticness | 1 | fullfree | 8/10 | Cclaimed | |
Hand my agent a scoped, limited-use payment credential — amount limits, expiry, merchant restrictions — instead of a raw card number C Delegated credentials | ai-native user | Payment credentials — stories about payment credentials in this arenaPayment credentials | 3 | full | 9/10 | Cclaimed | |
Agents identify themselves verifiably — registered profiles, signatures, or trust tiers — so I can tell trusted agent traffic from anonymous bots C Agent identity | merchant | Trust safety — stories about trust safety in this arenaTrust safety | 3 | full | 8/10 | Tprobed | |
My agent can complete a purchase end-to-end — checkout session, delegated payment credential, confirmed order C Checkout | ai-native user | Agent checkout — stories about agent checkout in this arenaAgent checkout | 3 | full | 8/10 | Cclaimed | |
Sensitive agent spending requires my documented approval — a confirmation step, signed mandate, or per-purchase consent — before money moves C Human oversight | ai-native user | Trust safety — stories about trust safety in this arenaTrust safety | 3 | full | 8/10 | Cclaimed | |
I have a documented self-serve path to start accepting agent traffic — enable a setting, sign an agreement, or publish an endpoint C Onboarding to agents | merchant | Merchant enablement — stories about merchant enablement in this arenaMerchant enablement | 3 | partialenterprise | 7/10 | Cclaimed | |
My agent can create and update a cart or order draft through a documented protocol call C Cart | ai-native user | Agent checkout — stories about agent checkout in this arenaAgent checkout | 3 | partial | 6/10 | Cclaimed | |
Define rules that trigger actions automatically on events G | ai-native user | Automation depth — how much of the product can run unattendedAutomation depth | 3 | partial | 5/10 | Cclaimed | |
Monetize an API or service with HTTP 402 machine payments that agents pay per call without a checkout UI C Machine payments | developer | Payment credentials — stories about payment credentials in this arenaPayment credentials | 3 | partial | 5/10 | Cclaimed | |
Provision a wallet my agent holds and spends from — funded and controlled by me, with balance visibility C Wallets | ai-native user | Payment credentials — stories about payment credentials in this arenaPayment credentials | 3 | partial | 5/10 | Cclaimed | |
The commerce protocol this product speaks is published as an open, versioned specification I can read and implement without signing anything C Spec publication | developer | Protocol openness — stories about protocol openness in this arenaProtocol openness | 3 | partialfree | 5/10 | Tprobed | |
My agent or backend can subscribe to order lifecycle events — created, updated, fulfilled, canceled — pushed programmatically C Order events | developer | Order lifecycle — stories about order lifecycle in this arenaOrder lifecycle | 3 | none | 0/10 | ||
Export all of my data in open formats and leave G | ai-native user | Openness — open source, data portability, and self-hosting storiesOpenness | 3 | n/a | untested | none yet | |
My agent can programmatically search products or services across merchants — keylessly or with self-service credentials, no private partnership required C Agent search | ai-native user | Agent discovery — stories about agent discovery in this arenaAgent discovery | 3 | n/a | untested | none yet | |
Prevent my data from being used to train AI models G | ai-native user | Privacy posture — data-handling and privacy storiesPrivacy posture | 3 | n/a | untested | none yet | |
Publish my product or service catalog into agent surfaces through a documented feed or import API so AI agents can discover what I sell C Merchant feeds | merchant | Agent discovery — stories about agent discovery in this arenaAgent discovery | 3 | n/a | untested | none yet | |
Self-host the core product G | ai-native user | Openness — open source, data portability, and self-hosting storiesOpenness | 3 | n/a | untested | none yet | |
Set per-agent spend caps and usage limits and revoke an agent's payment authority instantly G Spend controls | ai-native user | Trust safety — stories about trust safety in this arenaTrust safety | 2 | partial | 7/10 | Cclaimed | |
Build against a versioned commerce protocol with a published schema and conformance or validation tooling C Protocol conformance | developer | Agent checkout — stories about agent checkout in this arenaAgent checkout | 2 | partial | 5/10 | Cclaimed | |
Buyers can complete purchases of my products inside chat and assistant surfaces (ChatGPT, Claude, Gemini, Copilot and peers) C Embedded surfaces | merchant | Agent checkout — stories about agent checkout in this arenaAgent checkout | 2 | partial | 5/10 | Tprobed | |
My agent can discover payable services and APIs through a published directory or discovery index C Service discovery | ai-native user | Agent discovery — stories about agent discovery in this arenaAgent discovery | 2 | partial | 5/10 | Tprobed | |
Rate-limit, allow, or deny specific agents and agent platforms accessing my catalog and checkout C Traffic controls | merchant | Merchant enablement — stories about merchant enablement in this arenaMerchant enablement | 2 | partial | 5/10 | Cclaimed | |
Orders are attributed to the originating agent and I can report on or filter transactions by agent C Attribution analytics | merchant | Merchant enablement — stories about merchant enablement in this arenaMerchant enablement | 2 | partial | 4/10 | Cclaimed | |
Read the product's source under an open license G | ai-native user | Openness — open source, data portability, and self-hosting storiesOpenness | 2 | partialfree | 4/10 | Tprobed | |
The fraud, liability, and chargeback rules for agent-initiated transactions are documented so I know who bears the risk C Liability | merchant | Trust safety — stories about trust safety in this arenaTrust safety | 2 | partial | 3/10 | Cclaimed | |
At least two independent parties beyond the vendor implement the protocol or platform — it is an ecosystem, not a private integration C Ecosystem adoption | developer | Protocol openness — stories about protocol openness in this arenaProtocol openness | 2 | none | 0/10 | ||
Control data retention and deletion G | ai-native user | Privacy posture — data-handling and privacy storiesPrivacy posture | 2 | none | 0/10 | ||
Disputes and chargebacks on agent transactions can be handled via API — evidence submission, status, outcomes C Disputes | developer | Refunds disputes — stories about refunds disputes in this arenaRefunds disputes | 2 | none | 0/10 | ||
My agent can query the status and tracking of an order it placed, after the purchase C Post purchase status | ai-native user | Order lifecycle — stories about order lifecycle in this arenaOrder lifecycle | 2 | none | 0/10 | ||
Perform bulk operations across many items at once G | ai-native user | Automation depth — how much of the product can run unattendedAutomation depth | 2 | none | 0/10 | ||
Refunds on agent-placed orders can be initiated and tracked programmatically C Refunds | developer | Refunds disputes — stories about refunds disputes in this arenaRefunds disputes | 2 | none | 0/10 | ||
Settle agent-initiated payments in stablecoins over documented rails C Settlement rails | developer | Payment credentials — stories about payment credentials in this arenaPayment credentials | 2 | none | 0/10 | ||
The fees for agent-originated transactions are published — I can price agentic channels without asking sales C Fees transparency | merchant | Fees economics — stories about fees economics in this arenaFees economics | 2 | none | 0/10 | ||
Choose where my data is stored (region/residency) G | ai-native user | Privacy posture — data-handling and privacy storiesPrivacy posture | 2 | none | untested | none yet | |
Do everything through the API that I can do in the UI G | ai-native user | Openness — open source, data portability, and self-hosting storiesOpenness | 2 | n/a | untested | none yet | |
Opt out of telemetry and usage tracking G | ai-native user | Privacy posture — data-handling and privacy storiesPrivacy posture | 2 | n/a | untested | none yet | |
Read machine-readable offer data — price, availability, variants, checkout links — for any listed product or service C Machine readable offers | developer | Agent discovery — stories about agent discovery in this arenaAgent discovery | 2 | n/a | untested | none yet | |
Schedule recurring jobs or workflows G | ai-native user | Automation depth — how much of the product can run unattendedAutomation depth | 2 | n/a | untested | none yet | |
Agent-originated payments settle through documented payout and reporting flows, reconcilable like any other channel C Payouts | merchant | Fees economics — stories about fees economics in this arenaFees economics | 1 | partialenterprise | 4/10 | Cclaimed | |
Version, review, and roll back my automations G | ai-native user | Automation depth — how much of the product can run unattendedAutomation depth | 1 | partial | 3/10 | Cclaimed |
Opportunities — the stories that would move this product's scores, from its own judged verdictsOpportunitiestop 8 of 36 stories with headroom
What would move Visa Intelligent Commerce’s scores — derived from its own judged verdicts, biggest headroom first. Each line quotes what the judge found missing; shipping it (or evidencing it publicly) is the fix.
Order lifecycle — stories about order lifecycle in this arenaMy agent or backend can subscribe to order lifecycle events — created, updated, fulfilled, canceled — pushed programmatically
nonemoves PA Scoreimpact 30
Evidence covers card enrollment, credential/token retrieval, purchase-intent mandates, and Trusted Agent Protocol signing, but no documentation of a webhook or event-subscription API for order lifecycle states (created/updated/fulfilled/canceled) pushed to developer systems — only a vague mention of confirming payment outcomes and triggering post-purchase actions, without any subscription mechanism.
Agenticness — how well agents can access and operate the productGet AI-generated insights and suggestions from my data inside the product
nonemoves Built-in AIimpact 30
Visa Intelligent Commerce's evidence is entirely about enabling agent-initiated payments (tokens, mandates, passkeys, credential scoping, trusted agent protocol) — there is no mention of surfacing AI-generated insights or suggestions derived from a user's data within the product.
Agenticness — how well agents can access and operate the productUse an official CLI
nonemoves agent-readyimpact 30
Evidence shows an MCP server and an npm-published 'agent-toolkit' with tool bindings, but nothing describes an official CLI binary or command-line interface for AI-native users to interact with Visa Intelligent Commerce.
Agenticness — how well agents can access and operate the productSubscribe to events via webhooks
nonemoves agent-readyimpact 30
The evidence pack describes payment instructions, tokenization, mandates, and the Trusted Agent Protocol, but nowhere documents a webhook subscription mechanism for AI agents to receive event notifications.
Agenticness — how well agents can access and operate the productExplore an interactive API reference with runnable examples
nonemoves API qualityimpact 30
Missing: an interactive/try-it-now console embedded in API docs, evidence of one-click runnable code samples, any UI screenshot or independent report of in-docs execution.
Agenticness — how well agents can access and operate the productRely on versioned APIs with a documented deprecation policy
partialq3/10moves API qualityimpact 21
Missing: documented deprecation/versioning policy, migration guidance between versions, changelog or version-lifecycle commitments.
Order lifecycle — stories about order lifecycle in this arenaMy agent can query the status and tracking of an order it placed, after the purchase
nonemoves PA Scoreimpact 20
Missing: any order-status/tracking query endpoint, evidence of integration with merchant fulfillment/tracking data, or documentation describing post-purchase order lifecycle visibility for agents.
Automation depth — how much of the product can run unattendedPerform bulk operations across many items at once
nonemoves PA Scoreimpact 20
The evidence describes per-transaction flows (single card enrollment, single purchase-intent mandate, single credential retrieval, single invoice/payment link creation) with no mention of batch or bulk APIs for processing many items/transactions at once.
Showing the top 8 of 36 — every none/partial verdict in the story verdicts table is headroom.
Think a verdict is wrong? Every verdicts-table row has a Flag link — see the methodology.
Coverage map — which docs area, API section, or community source covers which judged storiesCoverage map8 surfaces · 31 covered stories
Where the cited evidence behind each covered verdict came from — the same citations the verdicts table shows, no extra judging.
Capabilities docs28 stories
- My agent can complete a purchase end-to-end — checkout session, delegated payment credential, confirmed order
- Buyers can complete purchases of my products inside chat and assistant surfaces (ChatGPT, Claude, Gemini, Copilot and peers)
- Build against a versioned commerce protocol with a published schema and conformance or validation tooling
- My agent can discover payable services and APIs through a published directory or discovery index
- Point an agent at llms.txt or agent-oriented docs
- Run the product headlessly / in CI for automation
- Connect an agent via an official MCP server
- Drive the product through a documented public API
- Issue scoped/least-privilege API credentials for an agent
- Build against official SDKs
- Set up automations that run autonomously in the background
- Operate the product with natural-language commands
- Test against a sandbox environment without touching production data
- Define rules that trigger actions automatically on events
- Version, review, and roll back my automations
- Agent-originated payments settle through documented payout and reporting flows, reconcilable like any other channel
- Orders are attributed to the originating agent and I can report on or filter transactions by agent
- I have a documented self-serve path to start accepting agent traffic — enable a setting, sign an agreement, or publish an endpoint
- Rate-limit, allow, or deny specific agents and agent platforms accessing my catalog and checkout
- Read the product's source under an open license
- Hand my agent a scoped, limited-use payment credential — amount limits, expiry, merchant restrictions — instead of a raw card number
- Monetize an API or service with HTTP 402 machine payments that agents pay per call without a checkout UI
- Provision a wallet my agent holds and spends from — funded and controlled by me, with balance visibility
- The commerce protocol this product speaks is published as an open, versioned specification I can read and implement without signing anything
- Agents identify themselves verifiably — registered profiles, signatures, or trust tiers — so I can tell trusted agent traffic from anonymous bots
- Sensitive agent spending requires my documented approval — a confirmation step, signed mandate, or per-purchase consent — before money moves
- The fraud, liability, and chargeback rules for agent-initiated transactions are documented so I know who bears the risk
- Set per-agent spend caps and usage limits and revoke an agent's payment authority instantly
docs19 stories
- My agent can create and update a cart or order draft through a documented protocol call
- My agent can complete a purchase end-to-end — checkout session, delegated payment credential, confirmed order
- Buyers can complete purchases of my products inside chat and assistant surfaces (ChatGPT, Claude, Gemini, Copilot and peers)
- Build against a versioned commerce protocol with a published schema and conformance or validation tooling
- Run the product headlessly / in CI for automation
- Drive the product through a documented public API
- Issue scoped/least-privilege API credentials for an agent
- Build against official SDKs
- Set up automations that run autonomously in the background
- Download a machine-readable API spec (OpenAPI or equivalent)
- Test against a sandbox environment without touching production data
- Rely on versioned APIs with a documented deprecation policy
- Define rules that trigger actions automatically on events
- Version, review, and roll back my automations
- Agent-originated payments settle through documented payout and reporting flows, reconcilable like any other channel
- Hand my agent a scoped, limited-use payment credential — amount limits, expiry, merchant restrictions — instead of a raw card number
- Provision a wallet my agent holds and spends from — funded and controlled by me, with balance visibility
- Sensitive agent spending requires my documented approval — a confirmation step, signed mandate, or per-purchase consent — before money moves
- Set per-agent spend caps and usage limits and revoke an agent's payment authority instantly
GitHub README15 stories
- Build against a versioned commerce protocol with a published schema and conformance or validation tooling
- My agent can discover payable services and APIs through a published directory or discovery index
- Point an agent at llms.txt or agent-oriented docs
- Run the product headlessly / in CI for automation
- Connect an agent via an official MCP server
- Drive the product through a documented public API
- Build against official SDKs
- Operate the product with natural-language commands
- Orders are attributed to the originating agent and I can report on or filter transactions by agent
- I have a documented self-serve path to start accepting agent traffic — enable a setting, sign an agreement, or publish an endpoint
- Rate-limit, allow, or deny specific agents and agent platforms accessing my catalog and checkout
- Read the product's source under an open license
- Monetize an API or service with HTTP 402 machine payments that agents pay per call without a checkout UI
- The commerce protocol this product speaks is published as an open, versioned specification I can read and implement without signing anything
- Agents identify themselves verifiably — registered profiles, signatures, or trust tiers — so I can tell trusted agent traffic from anonymous bots
En docs9 stories
- Buyers can complete purchases of my products inside chat and assistant surfaces (ChatGPT, Claude, Gemini, Copilot and peers)
- My agent can discover payable services and APIs through a published directory or discovery index
- Point an agent at llms.txt or agent-oriented docs
- Run the product headlessly / in CI for automation
- Connect an agent via an official MCP server
- Drive the product through a documented public API
- Build against official SDKs
- Operate the product with natural-language commands
- Download a machine-readable API spec (OpenAPI or equivalent)
Hello world docs6 stories
- Build against a versioned commerce protocol with a published schema and conformance or validation tooling
- Run the product headlessly / in CI for automation
- Drive the product through a documented public API
- Test against a sandbox environment without touching production data
- I have a documented self-serve path to start accepting agent traffic — enable a setting, sign an agreement, or publish an endpoint
- The commerce protocol this product speaks is published as an open, versioned specification I can read and implement without signing anything
Products docs6 stories
- My agent can create and update a cart or order draft through a documented protocol call
- My agent can complete a purchase end-to-end — checkout session, delegated payment credential, confirmed order
- Set up automations that run autonomously in the background
- Define rules that trigger actions automatically on events
- Provision a wallet my agent holds and spends from — funded and controlled by me, with balance visibility
- Set per-agent spend caps and usage limits and revoke an agent's payment authority instantly
llms.txt3 stories
Probe proofs — replayable recordings from the probe harnessProbe proofs
Replayable recordings from our probe harness — see the Prove-It protocol to submit one.
$curl -s https://api.visa.com/vdp/helloworld # keyless → structured credential challengereproduced$ curl -s https://api.visa.com/vdp/helloworld # [redacted]less → structured credential challenge
{"responseStatus":{"status":400,"code":"9123","severity":"ERROR","message":"Expected input credential was not present","info":""}}
$npm view @visaacceptance/mcp version # the Visa Acceptance MCP server, on the public registryreproduced$ npm view @visaacceptance/mcp version # the Visa Acceptance MCP server, on the public registry visaacceptance mcp version: 0.0.96
$curl -s https://raw.githubusercontent.com/visa/trusted-agent-protocol/main/README.md | head -3 # the published TAP spec + reference implementationreproduced$ curl -s https://raw.githubusercontent.com/visa/trusted-agent-protocol/main/README.md | head -3 # the published TAP spec + reference implementation # Trusted Agent Protocol *Establishing a universal standard of trust between AI agents and merchants for the next phase of agentic commerce.*
Claims vs evidence — vendor claims reconciled against independent verdictsClaims vs evidence
4 of 15 testable claims verified · 3 contradicted → integrity 0/100
22 distinct capability claims found in Visa Intelligent Commerce’s own claimed-docs/GitHub materials, reconciled against our judge’s independent verdicts.
4
Verified
8
Unverified
3
Contradicted
19
Undersold
Verified (5)
“Provides an official MCP server so developers can connect to Visa Intelligent Commerce APIs”
“Offers a toolkit letting developers and non-technical users direct AI agents with plain-language commands, no coding required”
Operate the product with natural-language commandspartialproof ↗
“Agents sign every request with HTTP Message Signatures (RFC 9421) so merchants can verify agent legitimacy and user authorization”
Agents identify themselves verifiably — registered profiles, signatures, or trust tiers — so I can tell trusted agent traffic from anonymous botsfullproof ↗
“Defines cryptographic message-signing standards (RFC9421) and a process for validating an agent's intent”
The commerce protocol this product speaks is published as an open, versioned specification I can read and implement without signing anythingpartialproof ↗
“Trusted Agent Protocol is published as an open spec with a runnable reference implementation and sample merchant/agent ecosystem”
The commerce protocol this product speaks is published as an open, versioned specification I can read and implement without signing anythingpartialproof ↗
Unverified (14)
“Agents can enroll a customer's payment card for tokenization via API during registration or a new purchase intent”
Hand my agent a scoped, limited-use payment credential — amount limits, expiry, merchant restrictions — instead of a raw card numberfullproof ↗
“Supports binding devices and setting up FIDO/Visa Payment Passkey authentication for enrollment and instruction management”
Sensitive agent spending requires my documented approval — a confirmation step, signed mandate, or per-purchase consent — before money movesfullproof ↗
“Captures consumer consent and manages spending-limit mandates for agent-initiated payments”
Set per-agent spend caps and usage limits and revoke an agent's payment authority instantlypartialproof ↗
“Captures consumer consent and manages spending-limit mandates for agent-initiated payments”
Sensitive agent spending requires my documented approval — a confirmation step, signed mandate, or per-purchase consent — before money movesfullproof ↗
“Securely retrieves and manages network tokens for agentic commerce across multiple payment networks”
Hand my agent a scoped, limited-use payment credential — amount limits, expiry, merchant restrictions — instead of a raw card numberfullproof ↗
“Requires cardholder step-up verification and passkey authentication of each payment instruction, validated against prior consent before authorization”
Sensitive agent spending requires my documented approval — a confirmation step, signed mandate, or per-purchase consent — before money movesfullproof ↗
“Lets merchants confidently allow agent-driven traffic while protecting against harmful bots”
Rate-limit, allow, or deny specific agents and agent platforms accessing my catalog and checkoutpartialproof ↗
“Passes verifiable consumer identifiers, PARs, loyalty numbers and similar via query params to streamline agent checkout”
My agent can complete a purchase end-to-end — checkout session, delegated payment credential, confirmed orderfullproof ↗
“Provides lifecycle management of agent-specific pass-through payment tokens usable at Visa-accepting merchant locations”
Hand my agent a scoped, limited-use payment credential — amount limits, expiry, merchant restrictions — instead of a raw card numberfullproof ↗
“Purchase Intent API lets agents set a decline-threshold spend cap and expiry, and cancel the intent if the purchase is aborted”
Set per-agent spend caps and usage limits and revoke an agent's payment authority instantlypartialproof ↗
“Credential retrieval is scoped to a specific merchant, amount, and optional refund/dispute/shipping policies before use at checkout”
Hand my agent a scoped, limited-use payment credential — amount limits, expiry, merchant restrictions — instead of a raw card numberfullproof ↗
“Supports an HTTP 402 flow where a signed payment IOU lets merchants grant access before settlement completes”
Monetize an API or service with HTTP 402 machine payments that agents pay per call without a checkout UIpartialproof ↗
“Merchants can self-serve sign up for the Intelligent Commerce Sandbox and begin sending test transactions”
I have a documented self-serve path to start accepting agent traffic — enable a setting, sign an agreement, or publish an endpointpartialproof ↗
“Merchants can self-serve sign up for the Intelligent Commerce Sandbox and begin sending test transactions”
Test against a sandbox environment without touching production datafullproof ↗
Contradicted (3)
“Confirms payment outcomes and triggers post-purchase actions in real time”
My agent can query the status and tracking of an order it placed, after the purchasenoneproof ↗
“Fees are documented: free to use in sandbox, contact Visa for production pricing”
The fees for agent-originated transactions are published — I can price agentic channels without asking salesnoneproof ↗
“Trusted Agent Protocol is published as an open spec with a runnable reference implementation and sample merchant/agent ecosystem”
At least two independent parties beyond the vendor implement the protocol or platform — it is an ecosystem, not a private integrationnoneproof ↗
Undersold (19)
My agent can create and update a cart or order draft through a documented protocol callpartialproof ↗
Buyers can complete purchases of my products inside chat and assistant surfaces (ChatGPT, Claude, Gemini, Copilot and peers)partialproof ↗
Build against a versioned commerce protocol with a published schema and conformance or validation toolingpartialproof ↗
My agent can discover payable services and APIs through a published directory or discovery indexpartialproof ↗
Point an agent at llms.txt or agent-oriented docsfullproof ↗
Run the product headlessly / in CI for automationpartialproof ↗
Drive the product through a documented public APIfullproof ↗
Issue scoped/least-privilege API credentials for an agentpartialproof ↗
Set up automations that run autonomously in the backgroundpartialproof ↗
Download a machine-readable API spec (OpenAPI or equivalent)partialproof ↗
Rely on versioned APIs with a documented deprecation policypartialproof ↗
Define rules that trigger actions automatically on eventspartialproof ↗
Agent-originated payments settle through documented payout and reporting flows, reconcilable like any other channelpartialproof ↗
Orders are attributed to the originating agent and I can report on or filter transactions by agentpartialproof ↗
Read the product's source under an open licensepartialproof ↗
Provision a wallet my agent holds and spends from — funded and controlled by me, with balance visibilitypartialproof ↗
The fraud, liability, and chargeback rules for agent-initiated transactions are documented so I know who bears the riskpartialproof ↗
Claims outside our story set (3)
Real capability claims found in Visa Intelligent Commerce’s own materials, but no story in this arena’s taxonomy covers them yet — that’s feedback on the taxonomy, not a mark against the product.
“Provides tools to manage invoices, create payment links, and perform other Visa Acceptance operations via the toolkit”
source ↗“Signed payment container includes a credential hash so merchants can detect fraudulent key-entered card data in guest checkout”
source ↗“Captures commerce signals (user instruction plus authorized purchase details) to help resolve disputes”
source ↗
Business model
The developer page states it plainly: free to use in Sandbox, contact Visa for fees in Production; agent transactions otherwise ride existing Visa network economics negotiated with issuers and acquirers.
pricing ↗Score trend
How this product’s scores have moved as evidence and verdicts are re-derived — a point per change, not per day.
Try Experimental
Run it in the microterminal →Recorded agent sessions — and a live MCP handshake where the vendor ships one.
Flag
⚑ Flag a verdictThink a verdict is wrong? Opens a prefilled GitHub issue — or use the ⚑ next to any verdict above.
For agents
