<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:googleplay="http://www.google.com/schemas/play-podcasts/1.0"><channel><title><![CDATA[The Fraud Brief]]></title><description><![CDATA[Practical notes on fraud, payments, agentic commerce, and real-time trust infrastructure.]]></description><link>https://www.thefraudbrief.com</link><image><url>https://substackcdn.com/image/fetch/$s_!Cw7Y!,w_256,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1818f543-158a-4a39-b8b8-889be7843671_1254x1254.png</url><title>The Fraud Brief</title><link>https://www.thefraudbrief.com</link></image><generator>Substack</generator><lastBuildDate>Tue, 28 Jul 2026 21:26:19 GMT</lastBuildDate><atom:link href="https://www.thefraudbrief.com/feed" rel="self" type="application/rss+xml"/><copyright><![CDATA[d'Artagnan Osborne]]></copyright><language><![CDATA[en]]></language><webMaster><![CDATA[2dartagnan@substack.com]]></webMaster><itunes:owner><itunes:email><![CDATA[2dartagnan@substack.com]]></itunes:email><itunes:name><![CDATA[d'Artagnan Osborne]]></itunes:name></itunes:owner><itunes:author><![CDATA[d'Artagnan Osborne]]></itunes:author><googleplay:owner><![CDATA[2dartagnan@substack.com]]></googleplay:owner><googleplay:email><![CDATA[2dartagnan@substack.com]]></googleplay:email><googleplay:author><![CDATA[d'Artagnan Osborne]]></googleplay:author><itunes:block><![CDATA[Yes]]></itunes:block><item><title><![CDATA[The AI Fraud Speed Gap]]></title><description><![CDATA[Fraud AI can score in milliseconds. Learning from a new attack may still take days or weeks.]]></description><link>https://www.thefraudbrief.com/p/the-ai-fraud-speed-gap</link><guid isPermaLink="false">https://www.thefraudbrief.com/p/the-ai-fraud-speed-gap</guid><dc:creator><![CDATA[d'Artagnan Osborne]]></dc:creator><pubDate>Wed, 15 Jul 2026 22:25:21 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!ED9w!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff434f43a-4c69-44a0-872f-399137a4d409_1448x1086.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<h3><strong>Fraud did not just become more complex. It became faster.</strong></h3><p>Many attacks are not fundamentally new.</p><p>What has changed is how quickly attackers can repeat them, alter one data point, observe the result, and try again.</p><p>A different email. A new device. A slightly modified address. Another card. Another identity.</p><p>Each transaction may look unrelated on its own. Together, they reveal an attacker rapidly testing the boundaries of the fraud system.</p><h3><strong>Fast scoring is not fast learning!</strong></h3><p>Commercial fraud platforms often describe themselves as real time because they can return a risk score in milliseconds.</p><p>But the model behind that score may still take days or weeks to learn from a new attack.</p><p>It may depend on confirmed fraud outcomes, chargebacks, analyst investigations, new rules, retraining, validation, and deployment.</p><p>Those controls exist for good reasons. Fraud models should not rewrite themselves after every suspicious event.</p><p>But the mismatch is becoming difficult to ignore:</p><blockquote><p><strong>The AI attacker can adapt after every attempt. The defensive AI model often cannot.</strong></p></blockquote><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!ED9w!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff434f43a-4c69-44a0-872f-399137a4d409_1448x1086.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!ED9w!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff434f43a-4c69-44a0-872f-399137a4d409_1448x1086.png 424w, https://substackcdn.com/image/fetch/$s_!ED9w!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff434f43a-4c69-44a0-872f-399137a4d409_1448x1086.png 848w, https://substackcdn.com/image/fetch/$s_!ED9w!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff434f43a-4c69-44a0-872f-399137a4d409_1448x1086.png 1272w, https://substackcdn.com/image/fetch/$s_!ED9w!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff434f43a-4c69-44a0-872f-399137a4d409_1448x1086.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!ED9w!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff434f43a-4c69-44a0-872f-399137a4d409_1448x1086.png" width="1448" height="1086" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/f434f43a-4c69-44a0-872f-399137a4d409_1448x1086.png&quot;,&quot;srcNoWatermark&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/fdbee03e-c536-47de-9908-218c431408eb_1448x1086.png&quot;,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1086,&quot;width&quot;:1448,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1159630,&quot;alt&quot;:&quot;The fraud-speed gap between ai attacks and ai fraud model learning.&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.thefraudbrief.com/i/207213952?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffdbee03e-c536-47de-9908-218c431408eb_1448x1086.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="The fraud-speed gap between ai attacks and ai fraud model learning." title="The fraud-speed gap between ai attacks and ai fraud model learning." srcset="https://substackcdn.com/image/fetch/$s_!ED9w!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff434f43a-4c69-44a0-872f-399137a4d409_1448x1086.png 424w, https://substackcdn.com/image/fetch/$s_!ED9w!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff434f43a-4c69-44a0-872f-399137a4d409_1448x1086.png 848w, https://substackcdn.com/image/fetch/$s_!ED9w!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff434f43a-4c69-44a0-872f-399137a4d409_1448x1086.png 1272w, https://substackcdn.com/image/fetch/$s_!ED9w!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff434f43a-4c69-44a0-872f-399137a4d409_1448x1086.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">AI attackers can adapt in minutes, while commercial fraud AI models may take days or weeks to learn from the same activity</figcaption></figure></div><h3><strong>The real fraud-speed gap</strong></h3><p>Attackers are increasingly operating a rapid optimization loop:</p><ul><li><p>Change one variable</p></li><li><p>Submit another transaction</p></li><li><p>Observe the response</p></li><li><p>Repeat until something works</p></li></ul><p>Meanwhile, many fraud models are still learning from yesterday&#8217;s confirmed outcomes.</p><p>The transaction is evaluated in milliseconds. The lesson from that transaction may reach the model much later.</p><p>That delay is the fraud-speed gap.</p><h3><strong>AI must help train the fraud AI</strong></h3><p>The answer is not uncontrolled autonomous retraining.</p><p>The answer is using AI to compress the path between a new attack being observed and the defense being safely updated.</p><p>AI should help connect related attempts, identify which variables are changing, recognize emerging patterns, propose new signals, and test improvements before controlled deployment.</p><p>The goal is simple:</p><p><strong>Keep human oversight and model governance, but move the learning loop much closer to the speed of the attack.</strong></p><h3><strong>Learning speed is the next advantage</strong></h3><p>Fraud systems should be measured across two dimensions:</p><p><strong>Decision speed:</strong><span> </span>How quickly can the system score the current transaction?</p><p><strong>Learning speed:</strong><span> </span>How quickly can it understand a new attack and improve the next decision?</p><p>The industry has spent years optimizing the first.</p><p>The next generation of fraud defense will be defined by the second.</p><blockquote><p><strong>The smartest model may not win. The fastest safe learner might.</strong></p></blockquote><p>Where does your fraud operation lose the most time today: confirming outcomes, investigating patterns, retraining models, or deploying new controls?</p><blockquote><p>At <a href="https://alogram.ai/">Alogram</a><span>, </span>we are focused on helping Shopify merchants move from isolated order review to explainable, lifecycle-aware fraud decisioning. For merchants seeing suspicious checkouts, failed payment attempts, risky orders, chargebacks, refund abuse, or repeat fraud patterns, our Shopify app is built to help identify those patterns earlier and support faster, clearer action.</p><p><span>Learn more about </span><a href="https://apps.shopify.com/alogram-payment-fraud-blocker">Alogram for Shopify</a><span>.</span></p></blockquote><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://www.thefraudbrief.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Thanks for reading The Fraud Brief. Subscribe for free to receive future posts.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p><em><span>Written by </span><a href="https://dartaganosborne.com"><span>d&#8217;Artagnan Osborne</span></a><span>, Founder of </span><a href="https://www.linkedin.com/company/alogram">Alogram</a><span>, where we are building real-time fraud and payment risk decisioning for modern commerce.</span></em></p>]]></content:encoded></item><item><title><![CDATA[Fraud Has Moved Beyond the Order]]></title><description><![CDATA[Shopify merchants are seeing the next wave of ecommerce fraud show up before checkout, after delivery, and inside the workflows traditional fraud tools were not built to protect.]]></description><link>https://www.thefraudbrief.com/p/fraud-has-moved-beyond-the-order</link><guid isPermaLink="false">https://www.thefraudbrief.com/p/fraud-has-moved-beyond-the-order</guid><dc:creator><![CDATA[d'Artagnan Osborne]]></dc:creator><pubDate>Wed, 24 Jun 2026 03:41:46 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!mkHq!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb85a3c85-5dce-43e3-9f61-61e57653a8c9_1672x941.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!mkHq!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb85a3c85-5dce-43e3-9f61-61e57653a8c9_1672x941.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!mkHq!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb85a3c85-5dce-43e3-9f61-61e57653a8c9_1672x941.png 424w, https://substackcdn.com/image/fetch/$s_!mkHq!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb85a3c85-5dce-43e3-9f61-61e57653a8c9_1672x941.png 848w, https://substackcdn.com/image/fetch/$s_!mkHq!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb85a3c85-5dce-43e3-9f61-61e57653a8c9_1672x941.png 1272w, https://substackcdn.com/image/fetch/$s_!mkHq!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb85a3c85-5dce-43e3-9f61-61e57653a8c9_1672x941.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!mkHq!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb85a3c85-5dce-43e3-9f61-61e57653a8c9_1672x941.png" width="1456" height="819" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/b85a3c85-5dce-43e3-9f61-61e57653a8c9_1672x941.png&quot;,&quot;srcNoWatermark&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/e2249100-dc4e-46d5-a435-6514bd261660_1672x941.png&quot;,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:819,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1297766,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.thefraudbrief.com/i/203340946?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe2249100-dc4e-46d5-a435-6514bd261660_1672x941.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!mkHq!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb85a3c85-5dce-43e3-9f61-61e57653a8c9_1672x941.png 424w, https://substackcdn.com/image/fetch/$s_!mkHq!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb85a3c85-5dce-43e3-9f61-61e57653a8c9_1672x941.png 848w, https://substackcdn.com/image/fetch/$s_!mkHq!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb85a3c85-5dce-43e3-9f61-61e57653a8c9_1672x941.png 1272w, https://substackcdn.com/image/fetch/$s_!mkHq!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb85a3c85-5dce-43e3-9f61-61e57653a8c9_1672x941.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">Fraud is no longer limited to the payment step. Modern ecommerce fraud can appear before the order, during checkout, after fulfillment, and at dispute.</figcaption></figure></div><p>The fraud merchants are dealing with today often starts before an order exists. It shows up as fake abandoned checkouts, failed payment attempts, card-testing bots, fake customer accounts, polluted analytics, damaged email flows, refund abuse, and chargebacks that arrive long after the package has shipped.</p><p>In other words, fraud has moved beyond the order.</p><p>That shift matters because many ecommerce fraud tools were built around a single moment: the transaction. A customer places an order, a system scores the risk, and the merchant decides whether to approve, review, cancel, or fulfill.</p><p>But modern fraud is increasingly attacking the full commerce workflow.</p><p>It is not just the payment. It is the checkout path. It is the abandoned cart flow. It is the email system. It is the return policy. It is the refund process. It is the dispute evidence. It is the repeated behavior that only becomes obvious when you connect the dots across time.</p><p>That is the new fraud surface.</p><div><hr></div><h3>The old model was order-centric</h3><p>Traditional ecommerce fraud prevention was built around the order.</p><p>A customer checks out. The fraud system looks at signals like billing address, shipping address, IP address, order value, velocity, payment method, and prior chargeback history. Then the merchant receives a recommendation.</p><p>Approve.</p><p>Review.</p><p>Decline.</p><p>That model still has value. Merchants still need to identify risky orders before they ship. They still need to avoid chargebacks. They still need to protect revenue and reduce manual review.</p><p>But the order-centric model assumes there is an order to evaluate.</p><p>That assumption is becoming a problem.</p><p>A growing portion of merchant pain now happens before a legitimate order exists. Fraudsters are not always trying to buy the product. Sometimes they are using the store as infrastructure.</p><p>They may be testing stolen cards. They may be creating fake customer accounts. They may be generating abandoned checkouts. They may be probing payment flows. They may be rotating names, emails, addresses, and IPs to see what gets through.</p><p>The merchant is left with the mess.</p><p>No sale.</p><p>No real customer.</p><p>No clean data.</p><p>Just failed payments, fake carts, bad analytics, support confusion, and a store that now has to separate real buyer activity from automated abuse.</p><div><hr></div><h3>The new fraud surface starts before the order</h3><p>One of the clearest patterns merchants are discussing today is checkout abuse.</p><p>A store sees a sudden wave of abandoned checkouts. The names look fake. The emails bounce. The payment attempts fail. The addresses repeat with small changes. The behavior does not look like normal shopping.</p><p>That is often not a marketing problem. It is not a conversion problem. It is not necessarily a product problem.</p><p>It can be card testing.</p><p>In a card-testing attack, fraudsters use automated scripts to test stolen card numbers against checkout pages. They are not interested in the merchant&#8217;s products. They are interested in whether the card authorizes.</p><p>That distinction is important.</p><p>If the attacker is using checkout as a testing endpoint, then product-page behavior may not tell the full story. Storefront traffic tools may miss part of the activity. Traditional order review may come too late because many of the attempts never become successful orders.</p><p>But the damage still happens.</p><p>Abandoned checkout data becomes unreliable.</p><p>Email recovery flows get triggered for fake customers.</p><p>Marketing analytics become harder to trust.</p><p>Payment attempts create noise.</p><p>Staff waste time investigating activity that was never a real buyer.</p><p>Good customers can become harder to see because the signal is buried under bot behavior.</p><p>This is why merchants are frustrated. They are not only asking, &#8220;How do I stop a fraudulent order?&#8221;</p><p>They are asking, &#8220;How do I stop my store from being used this way in the first place?&#8221;</p><p>That is a very different problem.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!9V9v!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5e96e8fd-2aac-4ac2-a506-ca17b9d5a265_1536x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!9V9v!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5e96e8fd-2aac-4ac2-a506-ca17b9d5a265_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!9V9v!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5e96e8fd-2aac-4ac2-a506-ca17b9d5a265_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!9V9v!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5e96e8fd-2aac-4ac2-a506-ca17b9d5a265_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!9V9v!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5e96e8fd-2aac-4ac2-a506-ca17b9d5a265_1536x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!9V9v!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5e96e8fd-2aac-4ac2-a506-ca17b9d5a265_1536x1024.png" width="1456" height="971" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/5e96e8fd-2aac-4ac2-a506-ca17b9d5a265_1536x1024.png&quot;,&quot;srcNoWatermark&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/bd0eee88-f507-47d6-956a-c54453b551bb_1536x1024.png&quot;,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:971,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1464581,&quot;alt&quot;:&quot;Comparison of traditional order-centric fraud prevention and modern lifecycle-aware ecommerce fraud detection.&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.thefraudbrief.com/i/203340946?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbd0eee88-f507-47d6-956a-c54453b551bb_1536x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Comparison of traditional order-centric fraud prevention and modern lifecycle-aware ecommerce fraud detection." title="Comparison of traditional order-centric fraud prevention and modern lifecycle-aware ecommerce fraud detection." srcset="https://substackcdn.com/image/fetch/$s_!9V9v!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5e96e8fd-2aac-4ac2-a506-ca17b9d5a265_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!9V9v!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5e96e8fd-2aac-4ac2-a506-ca17b9d5a265_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!9V9v!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5e96e8fd-2aac-4ac2-a506-ca17b9d5a265_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!9V9v!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5e96e8fd-2aac-4ac2-a506-ca17b9d5a265_1536x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">Traditional fraud tools were built to score orders. Modern fraud prevention needs to understand behavior across the full customer and transaction lifecycle...</figcaption></figure></div><div><hr></div><h3>The damage is not only chargebacks</h3><p>Chargebacks are still painful. They are direct, measurable, and easy to understand.</p><p>The merchant loses the sale. The product may already be gone. Shipping may be gone. Fees may apply. The dispute process takes time. The bank may side with the customer even when the merchant believes the evidence is strong.</p><p>But modern ecommerce fraud creates damage before the chargeback ever appears.</p><p>It damages the operating system of the store.</p><p>If bots create thousands of abandoned checkouts, the merchant&#8217;s abandoned cart metrics become less useful. If fake emails enter recovery flows, sender reputation can suffer. If fraudulent customers create accounts, customer data becomes polluted. If fake payment attempts spike, the merchant has to figure out whether the issue is fraud, payment configuration, checkout friction, or something else.</p><p>This is why I think the industry needs to stop treating fraud as only a transaction problem.</p><p>Fraud is now an operational problem.</p><p>It affects analytics.</p><p>It affects customer communication.</p><p>It affects fulfillment decisions.</p><p>It affects refund policies.</p><p>It affects dispute handling.</p><p>It affects staff time.</p><p>It affects how much friction a merchant feels forced to add for everyone else.</p><p>When merchants cannot trust the activity moving through their store, every workflow becomes harder.</p><div><hr></div><h3>Fraud continues after the order ships</h3><p>The other side of the problem happens after checkout.</p><p>An order can look acceptable at payment and still become risky later.</p><p>The customer may request a refund with suspicious timing. A return may come back damaged, empty, or inconsistent with the claim. A buyer may say the package never arrived even when tracking says it did. A customer may receive a refund and then file a chargeback. A repeat buyer may show a pattern of refund requests, return abuse, delivery claims, or disputes across multiple orders.</p><p>This is where fraud prevention often falls short.</p><p>A checkout score is a snapshot. It tells the merchant something about the transaction at that moment.</p><p>But fraud is not always visible at that moment.</p><p>Sometimes the risk appears in the sequence.</p><p>The timing.</p><p>The repetition.</p><p>The mismatch between behavior and claim.</p><p>The history across refunds, returns, support tickets, and disputes.</p><p>That is why post-purchase fraud is becoming such an important part of the conversation. Refund abuse, return abuse, friendly fraud, and chargebacks are not separate from payment fraud. They are part of the same lifecycle.</p><p>If a merchant only evaluates risk at checkout, they may miss the pattern that develops after the order.</p><div><hr></div><h3>AI and automation make this harder</h3><p>AI did not create fraud. Automation did not create fraud.</p><p>But both make fraud easier to scale.</p><p>Attackers can generate fake names, rotate emails, script checkout attempts, test cards faster, create more convincing messages, and manipulate evidence with less effort than before.</p><p>That changes the economics.</p><p>A fraudster does not need every attempt to work. They can run many attempts, learn from failures, and keep adjusting.</p><p>Merchants, on the other hand, have to protect conversion. They cannot simply block everything. They cannot add endless friction. They cannot manually review every strange cart, every failed payment, every refund request, and every chargeback.</p><p>That imbalance is the real issue.</p><p>Modern fraud is becoming faster, cheaper, and more automated.</p><p>Merchant response is still too often manual, fragmented, and reactive.</p><p>That gap is where the losses happen.</p><div><hr></div><h3>What merchants need now</h3><p>The next generation of ecommerce fraud prevention needs to move beyond isolated order scoring.</p><p>It needs to understand the full commerce lifecycle.</p><p>That means looking at signals across:</p><ul><li><p>Checkout behavior</p></li><li><p>Failed payment attempts</p></li><li><p>Account creation patterns</p></li><li><p>Abandoned cart anomalies</p></li><li><p>Email and identity signals</p></li><li><p>Shipping and address repetition</p></li><li><p>Order timing and velocity</p></li><li><p>Refund behavior</p></li><li><p>Return patterns</p></li><li><p>Delivery claims</p></li><li><p>Chargeback history</p></li><li><p>Merchant-specific risk policies</p></li></ul><p>The goal is not to block more customers.</p><p>The goal is to make better decisions earlier.</p><p>Good fraud prevention should help merchants understand what is happening, why it is risky, and what action makes sense. Sometimes the right action is to block. Sometimes it is to hold fulfillment. Sometimes it is to request verification. Sometimes it is to monitor a pattern. Sometimes it is to approve the order and avoid unnecessary friction.</p><p>The key is explainability.</p><p>Merchants do not just need a score. They need to know what the score means.</p><p>They need to know whether the issue is payment risk, identity risk, address repetition, refund behavior, velocity, or a pattern that has appeared across multiple transactions.</p><p>A black-box score is not enough when the fraud surface has expanded across the entire store.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!aLfA!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F626704b0-5060-4eda-901b-b5b72b3e7897_1536x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!aLfA!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F626704b0-5060-4eda-901b-b5b72b3e7897_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!aLfA!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F626704b0-5060-4eda-901b-b5b72b3e7897_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!aLfA!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F626704b0-5060-4eda-901b-b5b72b3e7897_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!aLfA!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F626704b0-5060-4eda-901b-b5b72b3e7897_1536x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!aLfA!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F626704b0-5060-4eda-901b-b5b72b3e7897_1536x1024.png" width="1456" height="971" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/626704b0-5060-4eda-901b-b5b72b3e7897_1536x1024.png&quot;,&quot;srcNoWatermark&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/8e21c3a6-9bad-4950-a134-f218f14eeffe_1536x1024.png&quot;,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:971,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1598629,&quot;alt&quot;:&quot;Infographic showing ecommerce fraud patterns before order, at checkout, after fulfillment, and during disputes.&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.thefraudbrief.com/i/203340946?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8e21c3a6-9bad-4950-a134-f218f14eeffe_1536x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Infographic showing ecommerce fraud patterns before order, at checkout, after fulfillment, and during disputes." title="Infographic showing ecommerce fraud patterns before order, at checkout, after fulfillment, and during disputes." srcset="https://substackcdn.com/image/fetch/$s_!aLfA!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F626704b0-5060-4eda-901b-b5b72b3e7897_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!aLfA!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F626704b0-5060-4eda-901b-b5b72b3e7897_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!aLfA!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F626704b0-5060-4eda-901b-b5b72b3e7897_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!aLfA!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F626704b0-5060-4eda-901b-b5b72b3e7897_1536x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">The fraud surface now spans fake accounts, card testing, refund abuse, return fraud, friendly fraud, and chargebacks.</figcaption></figure></div><div><hr></div><h3>The practical question for Shopify merchants</h3><p>For Shopify merchants, the practical question is no longer only:</p><p><strong>Which orders are high risk?</strong></p><p>The better question is:</p><p><strong>Where is fraud showing up across my store?</strong></p><p>Is it happening before checkout?</p><p>Is it happening through failed payment attempts?</p><p>Is it creating fake abandoned carts?</p><p>Is it tied to repeat addresses, repeat customers, or repeat refund behavior?</p><p>Is it showing up after fulfillment?</p><p>Is it becoming chargebacks?</p><p>Is it affecting analytics, email flows, staff time, or payment risk?</p><p>That broader view matters because fraud rarely stays in one lane.</p><p>A card-testing pattern may start as failed payments and abandoned carts. A refund abuse pattern may later become chargebacks. A repeat address pattern may look harmless order by order, but obvious when viewed across time.</p><p>Merchants need tools that can connect those signals.</p><p>Not just to stop fraud, but to operate with more confidence.</p><div><hr></div><h3>The modern solution</h3><p>Shopify merchants need to move from isolated order review to explainable, lifecycle-aware fraud decisioning.</p><p>The goal is not to create more friction for good customers.</p><p>The goal is to help merchants identify risky patterns earlier, understand why something looks suspicious, and take action before fraud spreads across payments, fulfillment, refunds, returns, disputes, analytics, and customer communication.</p><p>For modern merchants, fraud prevention cannot be limited to one transaction at one moment.</p><p>It has to follow the behavior.</p><p>It has to explain the risk.</p><p>It has to support the workflow.</p><p>The next wave of ecommerce fraud is not only about stolen cards or suspicious orders. It is about automated checkout abuse, fake accounts, polluted abandoned-cart data, refund abuse, return patterns, delivery claims, friendly fraud, and chargebacks that appear after the merchant has already done the work.</p><p>The merchants who understand this shift will be better prepared.</p><p>The tools that win in this next era will not simply score orders. They will help merchants see the pattern earlier, explain the risk clearly, and protect the full commerce workflow.</p><p>That is where ecommerce fraud prevention needs to go next.</p><div><hr></div><blockquote><p>At <a href="https://alogram.ai/">Alogram</a>, we are focused on helping Shopify merchants move from isolated order review to explainable, lifecycle-aware fraud decisioning. For merchants seeing suspicious checkouts, failed payment attempts, risky orders, chargebacks, refund abuse, or repeat fraud patterns, our Shopify app is built to help identify those patterns earlier and support faster, clearer action.</p><p>Learn more about <a href="https://apps.shopify.com/alogram-payment-fraud-blocker">Alogram for Shopify</a>.</p></blockquote><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://www.thefraudbrief.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Thanks for reading The Fraud Brief. Subscribe for free to receive future posts.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p><em>Written by d&#8217;Artagnan Osborne, Founder of <a href="https://www.linkedin.com/company/alogram">Alogram</a>, where we are building real-time fraud and payment risk decisioning for modern commerce.</em></p>]]></content:encoded></item><item><title><![CDATA[What Has to Be True for Agentic Payments to Work]]></title><description><![CDATA[Faster authorization is only part of the story. The real opportunity is programmable trust.]]></description><link>https://www.thefraudbrief.com/p/what-has-to-be-true-for-agentic-payments</link><guid isPermaLink="false">https://www.thefraudbrief.com/p/what-has-to-be-true-for-agentic-payments</guid><dc:creator><![CDATA[d'Artagnan Osborne]]></dc:creator><pubDate>Fri, 15 May 2026 22:36:55 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!8tdw!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Feade9d50-ef39-4d91-b6ee-51b176d02f94_1672x941.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!8tdw!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Feade9d50-ef39-4d91-b6ee-51b176d02f94_1672x941.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!8tdw!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Feade9d50-ef39-4d91-b6ee-51b176d02f94_1672x941.png 424w, https://substackcdn.com/image/fetch/$s_!8tdw!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Feade9d50-ef39-4d91-b6ee-51b176d02f94_1672x941.png 848w, https://substackcdn.com/image/fetch/$s_!8tdw!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Feade9d50-ef39-4d91-b6ee-51b176d02f94_1672x941.png 1272w, https://substackcdn.com/image/fetch/$s_!8tdw!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Feade9d50-ef39-4d91-b6ee-51b176d02f94_1672x941.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!8tdw!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Feade9d50-ef39-4d91-b6ee-51b176d02f94_1672x941.png" width="1456" height="819" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/eade9d50-ef39-4d91-b6ee-51b176d02f94_1672x941.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:819,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:969585,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://2dartagnan.substack.com/i/197888391?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Feade9d50-ef39-4d91-b6ee-51b176d02f94_1672x941.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!8tdw!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Feade9d50-ef39-4d91-b6ee-51b176d02f94_1672x941.png 424w, https://substackcdn.com/image/fetch/$s_!8tdw!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Feade9d50-ef39-4d91-b6ee-51b176d02f94_1672x941.png 848w, https://substackcdn.com/image/fetch/$s_!8tdw!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Feade9d50-ef39-4d91-b6ee-51b176d02f94_1672x941.png 1272w, https://substackcdn.com/image/fetch/$s_!8tdw!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Feade9d50-ef39-4d91-b6ee-51b176d02f94_1672x941.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p></p><p>I&#8217;ve been thinking a lot about agentic payments lately, not from the perspective of the underlying technology, but from the perspective of how this actually works in daily life.</p><p>Most of the conversation around agentic commerce assumes that the future is simply faster money movement. AI agents will shop, compare, reorder, subscribe, cancel, book, negotiate, and pay on our behalf. That part is probably true. Agents will make intent move faster, and in many cases they will reduce the friction between a decision and a payment.</p><p>But I think that is only half of the story.</p><p>For agentic payments to work safely at scale, the industry will need to accept a somewhat counterintuitive idea: authorization may speed up, but settlement may need to become more controlled.</p><p>Once agents are allowed to act on behalf of consumers and businesses, they will need more than a payment credential. They will need a defined operating range. That operating range will likely live in the wallet, or at least be enforced through the wallet, and it will include much more than a dollar limit.</p><p>A consumer might allow an agent to reorder household items, renew subscriptions below a certain amount, or book travel only within approved parameters. A business might allow an agent to prepare vendor payments, reconcile invoices, or route payments for approval, but not release funds without a human sign-off.</p><p>That is the shift.</p><p>The wallet is no longer just a place to store credentials. It becomes a programmable control layer for delegated authority.</p><div><hr></div><h3>Wallets need to become programmable</h3><p>When people talk about programmable wallets, the conversation often starts with spend limits. That makes sense, but spend limits are only the beginning.</p><p>Agentic payments will require controls around behavior, not just amount.</p><p>What merchant categories is the agent allowed to use? How often can it transact? Can it purchase internationally? Can it renew subscriptions? Can it select a new vendor? Can it act without approval during certain hours? Can it authorize a payment but delay settlement? When does it need a stronger identity signal from the user?</p><p>These are not edge cases. They are the everyday operating rules that will make agentic payments practical.</p><p>Over time, we will likely see default profiles for different use cases. A consumer wallet may have one profile for household purchases, another for subscriptions, another for travel, and another for family spending. A business wallet may have profiles for employee purchasing, vendor payments, recurring invoices, procurement approvals, and treasury-controlled payments.</p><p>A consumer agent buying household items should not operate under the same policy as a business agent preparing vendor payments.</p><p>The important question becomes less, &#8220;Can this agent pay?&#8221; and more, &#8220;Is this agent acting within the approved policy?&#8221;</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!gso-!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F38bf950d-85ab-4799-8383-8d5c67074527_1672x941.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!gso-!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F38bf950d-85ab-4799-8383-8d5c67074527_1672x941.png 424w, https://substackcdn.com/image/fetch/$s_!gso-!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F38bf950d-85ab-4799-8383-8d5c67074527_1672x941.png 848w, https://substackcdn.com/image/fetch/$s_!gso-!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F38bf950d-85ab-4799-8383-8d5c67074527_1672x941.png 1272w, https://substackcdn.com/image/fetch/$s_!gso-!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F38bf950d-85ab-4799-8383-8d5c67074527_1672x941.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!gso-!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F38bf950d-85ab-4799-8383-8d5c67074527_1672x941.png" width="1456" height="819" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/38bf950d-85ab-4799-8383-8d5c67074527_1672x941.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:819,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1089522,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://2dartagnan.substack.com/i/197888391?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F38bf950d-85ab-4799-8383-8d5c67074527_1672x941.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!gso-!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F38bf950d-85ab-4799-8383-8d5c67074527_1672x941.png 424w, https://substackcdn.com/image/fetch/$s_!gso-!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F38bf950d-85ab-4799-8383-8d5c67074527_1672x941.png 848w, https://substackcdn.com/image/fetch/$s_!gso-!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F38bf950d-85ab-4799-8383-8d5c67074527_1672x941.png 1272w, https://substackcdn.com/image/fetch/$s_!gso-!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F38bf950d-85ab-4799-8383-8d5c67074527_1672x941.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p></p><h3>Authorization and settlement need to separate</h3><p>This may be one of the most important changes.</p><p>In traditional consumer payments, we often think about authorization and settlement as part of one payment motion. A purchase is approved, and the system moves toward finality.</p><p>In agentic payments, that may not always be the right model.</p><p>Agents will make mistakes. That is not a criticism of agents. It is just part of giving software more responsibility. An agent may misunderstand instructions, optimize for the wrong outcome, choose the wrong merchant, renew the wrong subscription, or complete a purchase before the consumer realizes the implications.</p><p>The transaction may be technically authorized, but still not reflect the user&#8217;s true intent.</p><p>That creates a very different operating environment for fraud, disputes, and risk. Today, &#8220;friendly fraud&#8221; often implies a consumer disputes a purchase they authorized or benefited from. In an agentic environment, the line becomes more complicated. A consumer may have authorized the agent generally, but not that specific action, merchant, timing, or outcome.</p><p>That means the payment system needs more nuance.</p><p>Fast intent does not always mean instant settlement. There may need to be reversible windows, risk-based holds, approval workflows, or identity step-up before funds fully move.</p><p>The future may be faster authorization, but more controlled settlement.</p><h3>Business payments will stay more human-in-the-loop</h3><p>Business payments will evolve differently from consumer payments.</p><p>Agents will be very useful in business workflows. They can prepare payments, review invoices, reconcile data, route approvals, flag anomalies, and recommend the next action. In many cases, they will remove a lot of manual work from finance, procurement, and operations teams.</p><p>But that does not mean businesses will hand over final payment authority without controls.</p><p>For higher-value payments, new vendor relationships, unusual invoice patterns, treasury movement, or regulated workflows, human approval will remain important. The agent may do the work, but a person or defined approval chain may still own the release.</p><p>That is not a limitation. It is how trust will be designed into the process.</p><p>The practical future of business payments is not fully autonomous money movement everywhere. It is agent-assisted preparation, policy-based routing, and controlled approval.</p><h3>The phone becomes the practical trust checkpoint</h3><p>For consumers, the mobile device becomes especially important.</p><p>The phone already sits at the intersection of device identity, wallet credentials, biometric unlock, passkeys, location context, and user behavior. That makes it a natural place to perform a stronger trust check when an agent action needs confirmation.</p><p>If an agent is acting within a low-risk profile, the transaction may move with very little friction. But if the agent steps outside the expected pattern, chooses a new merchant, crosses a threshold, changes geography, or triggers a risk signal, the phone becomes the moment where the system asks for a stronger proof of intent.</p><p>Not every transaction needs more friction.</p><p>But some transactions will need a clear way to ask: is this really you, and do you really want this to happen?</p><p>That is where device-bound identity, biometrics, wallet approval, and passkeys become practical, not theoretical.</p><h3>A real-time decision layer becomes necessary</h3><p>The more agentic payments become part of everyday commerce, the more risk decisions need to happen inside the flow.</p><p>Static rules will not be enough. One-time authorization will not be enough. A basic fraud score at checkout will not be enough.</p><p>Every agent action may need to be evaluated against permission, policy, identity, behavior, merchant risk, transaction context, approval status, and settlement risk.</p><p>This is where I think the real infrastructure opportunity sits.</p><p>Not in making every payment faster, but in deciding which payments should move quickly, which should pause, which should require approval, and which should require stronger proof of intent.</p><p>At Alogram, this is how we think about the next layer of payment risk. Agentic payments will need a real-time risk and decision layer that can evaluate not only whether a payment is fraudulent, but whether the agent is acting within the right policy and whether the transaction should move, pause, or step up for approval.</p><p>That is a different problem than traditional payment fraud.</p><p>It is a trust and decisioning problem.</p><div><hr></div><h3>The real shift is programmable trust</h3><p>Agentic payments are coming, but they will not work simply because agents can initiate payments.</p><p>They will work when consumers and businesses can define the boundaries of delegated authority, when wallets can enforce those boundaries, when approval workflows are programmable, and when settlement can be controlled based on risk and intent.</p><p>The future of payments is not simply faster payments.</p><p>It is knowing when money should move fast, when it should pause, and when the system needs a stronger signal of trust.</p><p>That is the foundation agentic payments will need before they become part of daily life.</p><div><hr></div><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://www.thefraudbrief.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Thanks for reading The Fraud Brief. Subscribe for free to receive future posts.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><blockquote><p>Written by d&#8217;Artagnan Osborne, Founder of Alogram, where we are building real-time fraud and payment risk decisioning for modern commerce.</p></blockquote>]]></content:encoded></item></channel></rss>