Invest1 publisher2 min readPublished
Mysten Labs and Google Cloud split AI agent audit trails between customer buckets and Sui
Mysten Labs and Google Cloud launched an audit layer for AI agents on October 6, ahead of EU AI Act fines of up to 3% of global turnover from 2027. Agent logs stay in customer-controlled Google storage and only the proofs go to Sui and Walrus, with no price or customer yet disclosed.
The Investor · Invest desk
Drafted by a language model from the sources cited here and checked against its claim ledger before publication. How we use AISend a correction

What happened
- Mysten chief executive Evan Cheng said the product is meant to ensure that an AI agent's authority cannot be exceeded.
- When two agents dispute a transaction, VAA can replay the exchange over Google's Agent2Agent protocol, which Google has contributed to the Linux Foundation.
- VAA connects to Sui's Agent Payments facilitator and relies on the x402 protocol to find services and settle almost instantly.
- Initial enterprise deployments come first, and broader access is planned for afterwards.
Compiled by The InvestorSomething wrong?How this is made
Why it matters
- exposure Above EUR 500 million of turnover the 3% cap exceeds EUR 15 million, so the largest EU-exposed firms have the biggest penalty at stake if they cannot show what their agents did.
- cost Google keeps the storage spend on the raw agent records, and any gain for the Sui ecosystem depends on proof volume from deployments that get past the first wave.
- constraint Once a proof sits on Sui and Walrus, neither the customer nor Google can quietly rewrite an agent's record after a dispute or incident begins.
- decision Enterprises have to decide whether to fund a cryptographic audit trail before their agents spend, with no published price to weigh against a possible fine.
The storage split decides who earns what. Prompts, outputs, tool calls and policy decisions go into Google Cloud Storage buckets the customer controls, so the sensitive business record stays in the enterprise's own cloud account [2]. Only the proof that the record was not altered goes out. It is held on Walrus, Mysten's decentralized data platform, and coordinated on Sui, infrastructure Cryptobriefing describes as one no single party can quietly edit [3]. Google keeps the data [2]. Mysten's networks get the proof traffic [3]. Cryptobriefing writes that whether enterprise use turns into more activity on Sui and Walrus depends on how many customers move past initial deployments, a number it says is not yet known [14].
The build order puts payments first. Sui's work with Google began when it added support for the Agentic Payments Protocol in September 2025, a project about letting agents pay [9]. The audit layer came on October 6, 2026 [1], about 13 months later [13], and it plugs into Sui's own payments facilitator [6]. Agents got tools to spend before their employers got a tamper-evident way to show the spending was authorized [13].
The buyer case rests on regulation. Cryptobriefing ties the launch timing to the EU AI Act, which comes into force in 2027 with fines of up to EUR 15 million or 3% of global annual turnover [8]. The 3% figure is the larger one for any company with more than EUR 500 million of turnover [11]. At EUR 10 billion of turnover, 3% is EUR 300 million [12]. The announcement did not include a price, a customer name or a deployment count [10], so the cost of the product cannot yet be set against that exposure.
One path is that large EU-exposed firms adopt VAA for compliance and the rollout moves past its initial enterprise deployments [7]. Another is that agent payments over x402 grow on their own and the audit layer gets bought as an attachment to them [6]. The third is that VAA stays in early deployments and the extra Sui and Walrus activity never shows up [14]. I think compliance is the likelier source of paying customers, because the size of the fine is public and the volume of agent payments is not; Cryptobriefing lists x402 traction outside pilots as an open question [15]. The counter-case is that compliance teams decide the customer-controlled buckets are enough on their own and treat the on-chain proof as optional [2]. If broader access still has no date when the Act takes effect in 2027, the compliance case is wrong [7][8].
What to watch
- Whether Mysten and Google set a date for broader VAA access beyond initial enterprise deployments before the EU AI Act takes effect in 2027.
- Whether either company names a paying VAA customer or publishes a price.
- Whether x402 payments through Sui's Agent Payments facilitator show volume outside pilots.