Amazon fields roughly 360,000 inquiries a year from customers asking one question: did this message really come from you? Last week it handed that job to its shopping agent. Digital Commerce 360 reports that Alexa for Shopping gained two capabilities on September 4: "update me when," which tracks product and release availability across Amazon and the wider web, and a fraud check that tells a customer whether a suspicious email, text, or call claiming to be from Amazon is genuine.

Think about what a shopping assistant is for. Recommendations, comparisons, carts. Amazon shipped a scam detector.

The chatbot era of retail ended in May. What Amazon has added to its agent since then tells you what agents actually compete on. Not answers. Trust.

What shipped, and how careful it is

The fraud check works by having the customer describe or show the suspicious message. The agent compares sender details, content, timing, and formatting against the billions of messages Amazon actually sends, then returns one of three verdicts: authentic, not authentic, or unverifiable. Amazon says Alexa only calls a message authentic when it is "completely certain."

That three-verdict design is worth pausing on. A system that answered only yes or no would be guessing at the margins, and a wrong "authentic" is catastrophic. Building in "unverifiable" is an admission that the agent's confidence has limits, made visible in the product. I have read a lot of agent launch notes this year. Almost none of them ship their uncertainty as a feature.

The audience is not abstract either. Impersonation fraud losses among adults 60 and over have grown roughly four times since 2020, per the same Digital Commerce 360 report. Those are the customers least equipped to parse a spoofed delivery text, and the ones the agent is now standing in front of.

How we got here: the Rufus verdict

A quick recap, because the May decision frames the September one. Amazon retired Rufus, the shopping chatbot it launched in 2024, and combined it with Alexa+ into Alexa for Shopping, an agent living in the search experience itself. Modern Retail and Retail Dive covered the move, with coverage citing some 300 million customers who had used Rufus in 2025.

Rufus was a chat window beside the shopping. Alexa for Shopping is an agent inside it. The customer states an intent, the agent runs the search, applies the constraints, and surfaces the answer. Gap made the same architectural call with its Gemini-powered agentic checkout, and Home Depot said the quiet part out loud when its AI leadership named the chatbot era as past. The pattern held: agents win by sitting where the customer already is, not by being a destination the customer must remember to visit.

So the pivot itself is old news. The interesting question was always what Amazon would build once the agent owned the surface. Now we know the answer to the first move: it built credibility.

The trust gap is the constraint

The same Digital Commerce 360 report carries the numbers that explain why. In 2026, 48.5 percent of US shoppers have used AI for product research. Only 35.4 percent trust AI shopping recommendations completely or mostly.

Read those together. Nearly half of shoppers use the tools. Barely a third trust them. That 13-point gap is the single biggest constraint on agentic retail, and no amount of better recommendations closes it, because the doubt is not about answer quality. It is about whether the machine is working for you.

Ben Thompson described the underlying logic a decade ago in Aggregation Theory: the companies that win digital markets are the ones that own the consumer relationship through superior experience, and everything else, including suppliers, gets commoditized around that ownership. Amazon's move extends his logic one layer down. The consumer relationship of the agent era is not the shopping session. It is the trust decision underneath it: what is real, what is safe, what deserves my attention. An agent that verifies your suspicious texts is not answering a shopping question. It is becoming the thing you check reality against.

This is the MM Destination Economy Thesis playing out in real time. Amazon is not just keeping the purchase at its own destination. It is making its agent the destination for doubt itself, including doubt about messages Amazon never sent.

Both sides of the counter are now authenticating

Here is the symmetry I keep coming back to. Yesterday I published a piece on how merchants are struggling to authenticate the AI agents arriving at their storefronts, because a customer's buying agent and a hostile bot look identical at the door. Amazon's launch is the mirror image: the consumer's agent authenticating the merchant's messages, because a genuine delivery notice and a spoofed one look identical in the inbox.

Both problems are the same problem. Agentic commerce inserted software into a relationship that used to run on human recognition, and now every party needs a way to verify every other party. The retailer that solves verification for its customers earns something more durable than conversion lift. Amazon clearly knows this. Its 360,000 annual "is this real?" inquiries were a support cost. The agent turns them into a habit.

For every other retailer, the uncomfortable implication is that the bar for a shopping agent just moved. Matching Amazon on recommendations was already hard. The new game is matching it on verification, and that requires something most retailers do not have: a message corpus, a fraud team, and a brand customers already treat as an arbiter.

What I am watching

Whether the fraud check leaves the Amazon perimeter. Today it verifies messages claiming to be from Amazon. The obvious extension is verifying retail messages generally, which would make Alexa a trust utility rather than a store feature. That is a much bigger claim on the customer relationship.

Whether trust features show up in conversion data. If Amazon starts publishing numbers connecting the fraud check to shopping engagement, that is the confirmation that trust is the growth lever, not a support cost.

Who copies it first. Watch the other large retailers with AI agents in production. The first one to ship a verification feature rather than another recommendation feature has read the same numbers Amazon has.

Half of shoppers use AI to research purchases and barely a third trust what it tells them. If your agent can't close that gap, what exactly is it for?

Charlie Major is a Product Development Manager at Mastercard. The views and opinions expressed in Major Matters are his own and do not represent those of Mastercard.

Keep reading, free

The rest of this piece is for subscribers

Subscribing is free and takes one click. You get the full article now, plus payments, AI, and commerce decoded in your inbox. Already subscribed? Enter the same email and this device unlocks.

No spam, one click to unsubscribe, article unlocks instantly.