It has taken two weeks, but I’m finally 20% through processing Stripe Sessions 2026 (my first). I’ll say it plainly: I was absolutely blown away by the energy, the talent, the ambition, and frankly, the sheer scale of what Stripe is building. My only real complaint? The rooms needed to be bigger. A lot bigger.
Continue readingDPCs Great Idea with a Long Way To Go
© Starpoint LLP, 2026. No part of this site, blog.starpointllp.com, may be reproduced or retransmitted, in whole or in part, in any manner without the permission of the copyright owner. Also, see our Legal/Disclaimer (this is a highly opinionated and partially informed blog). Enterprise readers, please consider an Enterprise Subscription (not required for Starpoint Clients).
Executive Summary
I’m fortunate to chat with a diversity of large payment network stakeholders. As most of you know, I view the challenge in payments more from a political/incentive viewpoint than a technical one. The alphabet soup of new standards is hard to keep up with, but be assured that each one has a proponent (who benefits) and a group of resistors. Innovation in a network is hard, as existing stakeholders have built assets and competitive positions based upon how things work today. Today’s blog covers DPCs. DPCs may not be the biggest threat, but they are the newest. I’m not going to attempt a deep tech dive into DPCs; my effort is focused more on the challenges faced by any new payment innovation to gain traction and scale. Network effects are hard to beat!
Why read this blog? My readers know I view identity and authentication as part of the core “bundle” of payments, and Visa/MA are the de facto identity infrastructure of the internet because they unlock the power of banks (ie KYC) within a commercial framework with active governance. Today we are breaking down the latest “threat”: Digital Payment Credentials (DPCs) within Agentic(ie Gemini, GPay). The quick summary is that DPCs are an amazing technical innovation without a commercial framework or active governance, and thus will be challenged to operate separately from established networks (just like Stablecoins). This 23 page monster blog is a breakdown of the politics and the tech.
The CLARITY Act Is Locked — And Stablecoin Payments Just Lost Their Best Argument
When I wrote Stablecoin Rewards’s Last Hope – The CLARITY Act in February, the Senate was deadlocked, Coinbase had just walked out of the markup, and the White House was scrambling to hold a fragile coalition together. The central question was whether the Alsobrooks Compromise — activity-based rewards in, idle yield out — could survive the banking lobby long enough to reach a floor vote.
Continue readingEMVCo and DPCs
This should be a 20 page blog… but I don’t have time this week. Big picture thoughts
The April 28, 2026 announcement of Google’s donation of the Agent Payments Protocol (AP2) to the FIDO Alliance signals Google’s desire to move payments from the legacy Device Primary Account Number (DPAN) model to the Digital Payment Credential (DPC) mandate framework. For identity and payment experts, this shift represents more than a technical update; it is an effort to commoditize the proprietary trust moats built by card networks and Apple through a standardized, platform-agnostic infrastructure.
© Starpoint LLP, 2026. No part of this site, blog.starpointllp.com, may be reproduced or retransmitted, in whole or in part, in any manner without the permission of the copyright owner. Also, see our Legal/Disclaimer(this is a highly opinionated and partially informed blog). Enterprise readers, please consider an Enterprise Subscription(not required for Starpoint Clients).
Continue readingAP2 Donation to FIDO
Yesterday Google donated AP2 to the FIDO Alliance , let me share my thoughts on what this means.
- Effort to drive cross-industry standardization and extend Google’s established success within the FIDO ecosystem (log in with Google) while addressing the structural limitations of FIDO.
- A “tipping point” transition from “Identity as a Service” to “Identity as an Infrastructure,” where the mobile handset functions as the primary root of trust for autonomous commerce. Google is telling FIDO that they must incorporate elements of W3C VCs to have a future.
- Google’s first big public move toward device bound credentials (Titan M2, Anroid Credential Manager, Android Ready Alliance, …etc).
Federated Models Need Measurement
A follow on blog to my Intent data post yesterday. Where intent is needed for authorization, measurement is needed by every “specialist” participating in an agentic interaction. As background I was founder/CEO of Commerce Signals, focused on measurement and card transaction data. Measurement is a powerful business. In fact, I would say Google started out as a measurement company with the PageRank algorithm. By keeping track of what users clicked on which link for which search word, they created the directory of the internet. Let’s dig a little deeper into why measurement is key in agentic, and for all federated models.
Google is not building a monolithic “central brain” to disintermediate the ecosystem. Instead, as discussed in my UCP Blog (also see Ask Macy’s Case Study), they are fostering a world of specialist collaborative models that interact across three specific technical layers:
Continue readingAgentic – Intent and the New “Data Games’
While the industry recognizes that agentic commerce is reshaping payments, the more immediate technical friction lies in how it re-engineers data sharing. We are moving past the “top-of-funnel” coordination of inventory and pricing seen in protocols like UCP/MCP, entering the more contentious territory of AP2/ACP to coordinate trust and payment.
The Collaboration Paradox
As I’ve noted in Strategic Innovation Era, we are seeing a “Retailer First” surge. Successes like Walmart’s Sparky and Amazon’s Rufus prove that retailers are intent on controlling their own data and checkout environments.
However, external collaboration is mandatory for scale. I remain a proponent of Google’s approach: rather than a monolithic LLM, they are building a world of specialist model partnerships. But collaboration requires data exchange—the primary point of friction in this stage of strategic innovation.
Continue readingApril 2026 – EU Update: Regs, Dreams and Progress
I’ve been spending time this week getting up to date on Europe from stablecoins to MiCA to AMLA. My list of official whitepapers and academic articles are below (20 of them). My summary:
Continue readingAmerican Express Breaks the Agentic Commerce Deadlock: Why Today Matters
Why is this big news? Once one network says “we cover agent errors,” the others can’t say no.
The Problem We’ve Been Waiting for a Network to Solve
For the past eighteen months, I’ve written extensively about agentic commerce as a test of *incentive alignment*, not technology. The tech works. What doesn’t work is getting all parties—networks, issuers, merchants, platforms, and payment processors—to align around who owns the agent, who owns the data, and who bears the risk.
Today, American Express did something important: it solved that problem for its own closed loop (and its customer base). What does this mean? I hope it means US Issuers will lean in on the V/MA solutions that can allow them to operate at near parity (V/MA have the rules, tech and governance). But changing a network is really hard.
Continue readingFIncen/OFAC 303 Page Rule Squashes Stablecoin eCom Ambitions
Exec Summary
- New 303 Page FINCEN/OFAC Rule, aligns to the clear language of the Genius act, but IMHO will create major friction for use of USD stablecoins in eCommerce
- Rules for tracking parties and monitoring secondary activity create a compliance regime that burdens every party with the need to understand the provenance of a coin. Can you imagine accepting $2000 for a new TV, shipping it out, then having your stablecoins burned?
- So not only do we have KYC but we have SAR reporting requirements as PPSIs must also comply with SAR and the “Travel Rule” (31 CFR 1010.410(f)), which involves collecting and transmitting information about the originators and beneficiaries of funds transmittal.
- Banks and Stablecoin Issuers that jumpted into Solana’s Token-2022 model saw this coming and are well placed to move forward
- This creates substantial advantages for banks in sweeping coins into covered accounts and freshly minting new coins when required.
- Great news for Big Banks and V/MA. card gain signficant advantage over stablecoins with the proposed rule
- I see this as tailwind for stablecoins in settlement, but a big headwind for stablecoin in eCommerce (with a few exceptions).
- My views on Stablecoin winners and losers remain unchanged except for an update to winners for x402.
- No wonder Jamie Dimon remains confident that the banks will win, it will take years for stablecoin startups to build the regulatory muscle required to manage 303 pages of FinCEN mandates. By the time they do, the banks will already be running their own stablecoin subsidiaries under the very same rules.
The Rule
The U.S. Treasury’s Financial Crimes Enforcement Network (FinCEN) and OFAC issued a 303-page proposed rule implementing the GENIUS Act, reclassifying permitted payment stablecoin issuers (PPSIs) as financial institutions under the Bank Secrecy Act. Requirements include bank-grade KYC, suspicious activity reporting, transaction blocking/freezing capabilities, and appointment of a U.S.-based compliance officer. Enforcement begins January 2027. A 60-day comment period opens now.
The NPRM (Notice of Proposed Rulemaking) introduces 31 CFR Part 1033, which specifically outlines the obligations of PPSIs. The density of this document reflects the complexity of applying traditional banking rules to a distributed ledger environment.