Computer-Use and Browser Agents: AI That Operates SoftwareAgent protocols and agent-ready websites · Lesson 12 of 16

Agent protocols and agentic commerce: MCP, A2A, ACP, UCP and AP2

Article · 8 min · 8 min lecture

Video lecture

Agent protocols and agentic commerce: MCP, A2A, ACP, UCP and AP2

15 chapters · about 8 min · full transcript

Coming soon

Chapter 1 of 15

Agent protocols and agentic commerce

  • Why protocols, not just clicks
  • Five protocols, four layers
  • What merchants should do now

The narrated lecture is in production

Every chapter is scripted and ready. Browse the chapters and read the full transcript now — the video will appear here when it’s published.

Chapters

From clicking to talking

Computer use is how agents operate software built for humans. But clicking through a checkout is a clumsy way for software to talk to software. A parallel movement is building protocols so agents can call tools, talk to other agents, and complete purchases through structured interfaces. As a practitioner you need to know what each protocol does, which layer it sits in, and what it means for your business. Protocol versions and adoption move fast: check each project's official site before you build.

The protocol map (as of September 2026)

ProtocolOriginated byLayerWhat it does
MCP (Model Context Protocol)Anthropic (Nov 2024), now broadly adoptedAgent to tools and dataStandard way for AI apps to connect to tools, resources and prompts exposed by servers
A2A (Agent2Agent)Google (Apr 2025); Linux Foundation project since June 2025Agent to agentAgents discover each other via Agent Cards, delegate tasks, stream updates, exchange artifacts, without exposing internals
ACP (Agentic Commerce Protocol)OpenAI and Stripe (Sept 2025)Agent to merchant checkoutLets AI assistants complete purchases with merchants; powers Instant Checkout in ChatGPT
UCP (Universal Commerce Protocol)Google with retail and payments partners (Jan 2026)Agent to merchant commerceOpen standard for discovery-to-checkout journeys across Google's AI surfaces; checkout initially for eligible US merchants with expansion planned
AP2 (Agent Payments Protocol)Google with payments partners (Sept 2025)Payment authorizationUses cryptographically signed mandates as verifiable evidence of user intent; designed as an extension to A2A and MCP

Think of them as layers: MCP connects an agent to its tools; A2A connects agents to each other; ACP and UCP define how an agent and a merchant complete a purchase; AP2 provides verifiable authorization for the payment. They overlap and compete in places, and the landscape will consolidate. The durable ideas are discovery, structured capability descriptions, verifiable authorization and auditable transactions.

A2A in practice

A2A reached its 1.0 specification in 2026 and is governed as a Linux Foundation project with support from many technology companies. Key concepts:

  • Agent Card: a JSON document, conventionally served at /.well-known/agent-card.json, describing the agent's name, description, endpoints (with protocol bindings such as JSON-RPC, gRPC or HTTP+JSON), capabilities (streaming, push notifications), security schemes and skills.
  • Tasks: the unit of work, with a lifecycle (submitted, working, input required, completed, failed, and so on).
  • Messages and parts: text, files and structured data exchanged during a task.
  • Artifacts: the outputs a task produces.
  • Opacity: agents collaborate without sharing internal memory, prompts or tools.

A simplified Agent Card for a hypothetical agency service:

{
  "name": "Site Audit Agent",
  "description": "Runs read-only technical and content audits of a website and returns a findings report.",
  "supportedInterfaces": [
    {"url": "https://agents.example-agency.com/a2a/v1", "protocolBinding": "JSONRPC", "protocolVersion": "1.0"}
  ],
  "capabilities": {"streaming": true, "pushNotifications": false},
  "defaultInputModes": ["text/plain", "application/json"],
  "defaultOutputModes": ["application/json", "text/markdown"],
  "skills": [
    {"id": "landing-page-audit", "name": "Landing page audit",
     "description": "Checks offers, tracking tags, broken links and accessibility basics on up to 50 URLs.",
     "tags": ["audit", "marketing", "qa"],
     "examples": ["Audit these 12 landing pages for the Eid campaign"]}
  ]
}

Field names and required properties are defined in the specification; treat this as illustrative and validate against the current schema and SDK (official SDKs exist for several languages, including Python).

What agentic commerce means for merchants

When an AI assistant shops on a user's behalf, the "visitor" to your store may be an agent reading structured data, not a human browsing pages. Merchants increasingly face three routes:

  1. Agents browse your site like humans (computer use). Your site must be accessible and machine-readable; next lesson.
  2. Agents use a commerce protocol (ACP, UCP) through platforms and payment providers you already use. Participation usually runs through your commerce platform, product feeds and payment processor, often via early-access programs. Check eligibility in your region; initial rollouts have focused on the US.
  3. Agents call your APIs or MCP servers directly, for example a booking or quote API.

Practical merchant checklist:

  • Keep product feeds complete and accurate (price, availability, shipping, returns); agents compare these ruthlessly.
  • Make policies machine-readable: returns, shipping times, warranties.
  • Decide your fraud and authorization stance for agent-initiated orders; protocols with signed mandates give better evidence than a bot filling a form.
  • Watch disputes and refunds: who is liable when an agent buys the wrong item? Protocols and card-network rules are still evolving; talk to your payment provider.

Worked example: a Lahore skincare brand

A skincare brand selling in Pakistan and the Gulf reviews its readiness. Protocol checkout programs are not yet available to it, so it focuses on what is: accurate product feeds for the marketplaces it uses, clean Product structured data on its site, an accessible checkout that a browser agent can complete, and clear, machine-readable return and shipping policies. It also notes which payment providers it uses and asks each about their agentic commerce roadmap. When programs open in its markets, it is ready.

Pitfalls

  • Treating protocol announcements as universal availability. Check regions, eligibility and status.
  • Confusing layers: MCP does not buy things; ACP does not connect agents to your database.
  • Ignoring security: an Agent Card or MCP server is a new attack surface requiring authentication, authorization and rate limits.

How to measure success

For merchants: share of orders or sessions identified as agent-originated (where your platform reports it), feed error rates, agent-checkout completion in tests. For builders: interoperability tests passing against the official SDKs.

Key takeaways

  • MCP connects agents to tools, A2A connects agents to agents, ACP and UCP handle agent checkout, AP2 adds verifiable payment mandates.
  • A2A agents publish Agent Cards (conventionally at /.well-known/agent-card.json) describing skills, endpoints and security.
  • Merchants should prioritize accurate feeds, machine-readable policies, accessible checkout and payment-provider conversations.
  • Protocol availability varies by region and program; verify status and treat new endpoints as attack surface.

Check your understanding

Quick questions to lock in the lesson. They don’t count towards your certificate.

  1. Which protocol is designed for one AI agent to discover and delegate a task to another agent?
  2. What does AP2 add to agent payments?
  3. A merchant in a market where protocol checkout isn't available yet wants to be agent-ready. What should it do first?

Put it into practice

Map your business to the three agent routes (browse, protocol, API). For each, note one gap you could close this quarter.

Enrol for free to save your progress

Reading is always free. Enrol to keep your place, take the final assessment and earn a verifiable certificate.