Riskified Launches Agent Identity Risk Intelligence: Know Who Is Behind AI Personal Assistants like Muse at Checkout and in Customer Service
As consumer AI assistants begin to shop, cancel, file claims and negotiate refunds on their owners' behalf,
Consumer personal AI assistants such as Meta's Muse, Instinct, and dots in ChatGPT are moving from product discovery to action. Agents check out, keep working after the user closes the app, compare prices across sites by design, and proactively check for price-drop refunds and no-fee returns. Behaviors that were occasional for human shoppers, such as checking whether a price fell after purchase, canceling when a cheaper option appears, or reading a return policy to the letter, can become routine when an agent does them every day for every order. The question merchants face is no longer whether an interaction is automated, but who the automation acts for, and whether what it does on their behalf is behavior the merchant would accept from the person themselves.
Authenticated is not the same as trusted. New standards such as the Personal Agent Protocol, introduced this month by Sierra and Meta with Shopify, Stripe, Walmart and others, may give merchants a secure way to confirm that an AI assistant is authorized to act on an account. That is necessary, and
The coming age of delegated fraud. The same capability that lets a legitimate shopper delegate a purchase or a return also lets a fraudster delegate a fraud scheme. Refund-as-a-service fraud rings already sell scripted claims of empty boxes and missing deliveries against retailer support teams. In
"Agent protocols solve a real problem: merchants need a secure way to let a customer's assistant act for them. What they don't solve is whether that customer should be trusted. A fraud ring can authorize an agent as easily as a loyal shopper can," said
Announcing Agent Identity Risk Intelligence, part of Riskified’s AI Agent Intelligence, first introduced in
-
Agent Identity Risk Intelligence.
Riskified will recognize when an order or customer service request comes from a personal AI assistant. Where an assistant or commerce platform provides a verified agent credential,Riskified will accept it. Either way,Riskified will connect the request to the person behind it, drawing on what the network already knows from billions of orders, claims and chargebacks. This recognition will first be available to merchants on Shopify, where orders placed through Meta's Muse already arrive tagged as agent-originated, and will extend to other platforms as agent identification standards take hold. When an assistant acts on a shopper's behalf, much of the device and browser telemetry that merchants have relied on is absent. Where that telemetry is missing,Riskified leans on identity and network history, the behavior of the agent, which signals intent, and in post-checkout interactions, such as refund requests, it can engage the assistant directly, confirming details or applying step-up friction that a legitimate assistant can satisfy and a script cannot. The result is a risk decision that reflects both the identity behind the agent and the agent's own behavior. The same signals will feed AI Agent Intelligence reporting inRiskified Control Center , which will show merchants their share of orders and claims arriving through personal AI assistants, whether verified or inferred, broken out by assistant, where one can be identified. Agent Identity Risk Intelligence will be available throughRiskified's existing APIs and the AI Agent Approve MCP server onAWS Marketplace . -
Agent Identity Risk Intelligence for
Decision Studio .Riskified will support policies by agent type withinRiskified Decision Studio , for example, auto-approving low-risk agent orders from verified identities while routing high-risk agent-originated refund claims for review. Control Center will report approval rates, fraud rates, and claim-abuse rates for agent-originated traffic alongside the rest of the business, so merchants can see whether that traffic behaves differently and tune their policies accordingly. -
Agent Identity Risk Intelligence for Zendesk. The same identity risk category will flow into
Riskified's integration with Zendesk, so both human agents in Zendesk Agent Workspace and Zendesk's Specialized AI Agents can see when a refund or return request arrives through a consumer AI assistant and act on the risk of the person behind it.
Since
Availability. Agent Identity Risk Intelligence opens to a limited beta for enterprise merchants in
About Riskified
Riskified (NYSE: RSKD) is a leader in digital fraud and risk intelligence. Many of the world's biggest brands and publicly traded companies rely on Riskified to stop fraud and abuse across the entire customer journey, from account creation to payments to disputes. Built and managed by a global team of risk analysts, data scientists, and researchers, Riskified's AI-powered platform analyzes the individual behind each interaction to provide real-time decisions and identity-based insights. Learn more at riskified.com.
View source version on businesswire.com: https://www.businesswire.com/news/home/20261008934928/en/
Riskified media contact
Corporate Communications: Julia Hallett, Director of Corporate Marketing and Communications press@riskified.com
Investor Relations: Stephen Shulstein, Head of Investor Relations ir@riskified.com
Source: Riskified Ltd.