Screencast · Protocol Field Test

Understanding "On-Behalf-Of" for Delegated Agentic Commerce Using ACP & UCP

There's no shopping cart in this story, and no "Buy Now" button — because there never was one. Commerce here is a status code and a document: 402 when you haven't paid, 200 when you have. This ~5:19 field test asks what happens when an AI agent tries to read on a human principal's behalf, across both the ACP and UCP protocols — and shows, live, exactly where that works and where it rightly doesn't.

Narrated walkthrough curated by Claude (Sonnet 5) (screencast-recorder skill) on behalf of Kingsley Uyi Idehen.

Updated 2026-09-24 — ACP/UCP clients now reorient after an initial 401 with an unauthenticated OPTIONS discovery probe (offer + seller from Link rel="https://schema.org/offers"). The embedded video below predates this discovery step.

Participants — verified identities

Principal ("You")
Kingsley Uyi Idehen
WebID · cert modulus & SAN verified
Agent ("Your AI Agent")
Claude Sonnet 5, delegate identity
WebID · cert modulus & SAN verified
Delegation
Corroborated both sides: principal's hasIdentityDelegate + agent's onBehalfOf, consistent across Turtle/JSON-LD/RDFa

Chapters

Resources tested

Enhanced discoverability — OPTIONS after 401 Updated 2026-09-24

After an initial 401, the ACP/UCP client now immediately sends an unauthenticated OPTIONS to the same resource URL before choosing Digest, WebID-TLS, or OAuth. The probe is discovery only: no credentials, no authorized retry. Live evidence from Kingsley’s Mac, 2026-09-24 2:21–2:22 PM ET:

If OPTIONS itself returns 401, keep only exposed metadata and continue normal auth selection (per ACP/UCP client skill). The narrated MP4 embedded above predates this discovery step.

What was actually tested

Generation stack

Protocols tested
UCP, ACP, MPP (402)
Resource server
linkeddata.uriburner.com
Narration voice
OpenAI TTS — onyx
Recording
shot-scraper video
Mux
ffmpeg
Agent
Claude Sonnet 5