The short version: On October 6, Sierra and Meta proposed the Personal Agent Protocol, an open standard for what happens when a customer sends an AI agent to your business instead of coming in person. The idea is that the customer decides what the agent may touch, and the business decides what agents may do. If you sell on Shopify, part of that business decision has already been made for you. Shopify’s Help Center, which we read on October 10, says the setting “Allow Shopify to manage for me” is on by default. That setting keeps every AI shopping channel active, Meta’s Muse included, turns on checkout inside the AI chat where it is supported, and enrolls your store in new AI channels automatically. For most shops that default is a sensible place to start. It is still worth choosing on purpose.
Amazon made its own call about Meta’s shopping agent in September. Most small Shopify merchants had theirs made by a default switch, and plenty of them have never opened the page where it lives.
What is the Personal Agent Protocol?
The announcement, written by Sierra co-founders Bret Taylor and Clay Bavor, starts from a problem anyone who has watched an AI agent shop will recognize. Agents today use your website the way a person does. They load pages and click through forms, and when that fails they fall back to your phone line or web chat. The protocol is meant to give them a proper front door.
Discovery starts on the company’s own website. The agent then opens a session for its user, built on OAuth, the same sign-in plumbing behind every “Continue with Google” button, and that session follows the customer across channels.
Access comes in layers. As a guest, an agent can check whether something is in stock or ask about your return policy without an account. Anything that touches the customer’s account needs sign-in, and the customer picks read-only or write access. The business picks the route: agents can use its regular web pages, connect through APIs built on standards such as MCP and OpenAPI, or talk to the company’s own agent when the job needs a conversation, like a warranty claim.
The named partners are Genesys, Instinct, Rocket, Shopify, Stripe and Walmart. Sierra says the v0.1 specification arrives later in October. Payments, push notifications and finer-grained permissions are listed as future extensions. As Implicator noted, no specification, license or governing body had been published at announcement, and OpenAI and Anthropic were not on the partner list.
Why would a small business want a standard for AI agents?
Right now every large company writes its own rules, and they don’t agree. Meta launched Muse on September 8, and Amazon began blocking it on September 20. Amazon said Meta had not told it the agent would be visiting, that Muse did not identify itself, and that it appeared to store customer credentials. We covered that standoff in our look at Amazon’s one-way door.
Others took different lines. In a TechCrunch survey published October 6, Yelp said it does not permit non-human traffic unless the agent’s operator pays for data access, while Zillow said it allows agents acting for consumers.
A three-person shop cannot negotiate separately with every agent maker. That makes a shared standard genuinely good news for small businesses: the same front door and the same switches Walmart gets, offered to everyone through the platforms they already use. The open question is who controls those switches for a small store, and on Shopify the answer today is mostly Shopify.
Who decides which AI agents can shop a Shopify store?
The controls are in your Shopify admin under Sales channels, then Agentic. According to Shopify’s Help Center page for that screen, read October 10, “Allow Shopify to manage for me” is on by default. While it is on, Shopify keeps all AI channels active, switches on direct checkout wherever a channel supports it, and enrolls you in new channels as they launch. The page lists ChatGPT, Microsoft Copilot, Google AI Mode and Gemini, and Meta surfaces including Muse. Shopify’s own Shop app is managed separately and has no switch on this screen.
Turn the master switch off, and four separate controls appear:
- Shopify Catalog access, which sets which AI channels can see your products.
- Auto enroll new storefronts, which decides whether you join new channels automatically.
- Direct checkout, which decides whether a customer pays inside the AI chat or gets sent to your store to finish.
- Other channels, one grouped toggle for smaller and experimental shopping agents from independent developers and startups.
Two details on that page matter more than they look. Turning off Catalog access can take up to seven days before your product data stops flowing through Shopify Catalog, and it switches off direct checkout too. And turning the master switch back on reactivates everything at once, direct checkout included.
The protocol layer above this is crowded: by Implicator’s count, Shopify also sits in Visa’s Trusted Agent Protocol and Google’s Universal Commerce Protocol. For a merchant that is mostly not a standards war. The platform translates; your decisions live on one admin screen.
What should an owner do about AI shopping agents this month?
Open the Agentic screen and read it. It takes five minutes. The setting worth an actual decision is automatic enrollment, because it covers channels that don’t exist yet, including whatever ends up speaking the Personal Agent Protocol. If you want to stay open to today’s channels but review new ones yourself, switch off the master setting, leave Catalog access on, and turn off Auto enroll new storefronts.
Decide where the sale finishes. Direct checkout means the order completes inside the AI chat. With it off, shoppers can still find your products there but buy on your own store. A shop that sells on fit questions, add-ons or a custom note may want that last step on its own site. Shopify’s page on in-chat checkout for Microsoft Copilot also requires completed terms of service, privacy and return policies under Settings, then Policies, before that channel’s checkout works.
Write the guest answers plainly. Sierra’s own examples of what a guest agent asks are whether something is in stock and what the return policy says. That is a good reason to make your return policy, hours and shipping rules short, specific and easy to find on a page. Not on Shopify? The same applies to your own site, where Sierra says discovery starts. The phone version of this shift, where an AI calls your front desk on a customer’s behalf, is in our guide to Gemini Call for Me. If you want Meta’s agent working for your side of the counter instead, see how Muse for Small Business handles approvals.
Leaving the door open is a fine choice, and for most stores probably the right one: a customer who sends an agent has already picked your shop. Someone sets the terms of entry either way. Better that the owner knows it was them.
Frequently Asked Questions
What is the Personal Agent Protocol?
The Personal Agent Protocol is an open standard proposed by Sierra and Meta on October 6, 2026, for how personal AI agents interact with businesses. It uses OAuth-based sessions, lets an agent act as a guest or sign in with read-only or write access chosen by the customer, and lets each business choose whether agents use its website, its APIs or its own agent. Sierra says the v0.1 specification will be published later in October 2026.
Is my Shopify store already open to AI shopping agents?
Probably. Shopify’s Help Center says “Allow Shopify to manage for me” is on by default, which keeps AI channels such as ChatGPT, Microsoft Copilot, Google AI Mode and Gemini, and Meta surfaces including Muse active, turns on direct checkout where supported, and enrolls the store in new channels automatically. You can check under Sales channels, then Agentic, in your Shopify admin.
How do I stop my Shopify store from joining new AI channels automatically?
In your Shopify admin, go to Sales channels, then Agentic, and turn off “Allow Shopify to manage for me.” That reveals per-channel controls, including Auto enroll new storefronts, which you can switch off while keeping Catalog access for the channels you already use.
Does the Personal Agent Protocol handle payments?
Not at first. Sierra’s announcement lists payments, push notifications and more detailed permissions as future extensions rather than part of the first version. Agent checkout is addressed by separate efforts, including OpenAI’s Agentic Commerce Protocol and Visa’s Trusted Agent Protocol.
Have you opened your store’s Agentic settings yet, and did you leave the door the way you found it?
