Today on The Wrapper: The fallout from the Kelp DAO exploit has reached Aave, forcing a major overhaul of the protocol's risk framework to contain a potential $200 million bad debt. Meanwhile, the legal grounding for the agentic economy continues to solidify, from a landmark Indian copyright ruling on AI training data to a new Deloitte-backed council specifically targeting the liabilities of AI agents holding The Wrapper wallets.
In a landmark decision on Friday, the Delhi High Court ruled that the use of published news content for training Large Language Models (LLMs) is permissible under the 'fair dealing' exception in India's Copyright Act. The court denied an injunction sought by a media group against OpenAI, establishing a significant legal precedent for AI training data rights in India and potentially across Asia.
Why it matters
This ruling provides critical legal clarity on the intellectual property inputs for AI, directly impacting the legal and operational design of companies building autonomous agents. By defining the boundaries for data usage in training, the court's decision addresses a core uncertainty that has clouded AI development. For onchain organizations, this precedent is foundational; it begins to codify the legal environment in which AI agents will operate, source information, and make decisions, touching on the very nature of their autonomy and legal standing. This is a key piece of the puzzle for the emerging legal infrastructure of AI personhood.
The verdict is being hailed by AI developers as a crucial victory that allows for continued innovation without the constant threat of copyright litigation over training data. However, media and content creators argue the ruling devalues their work and removes a potential revenue stream, with some planning to appeal. Legal analysts note this decision could make India a more attractive jurisdiction for AI development, contrasting with more restrictive approaches being considered in the EU and parts of the US.
The focus in enterprise AI is rapidly shifting from experimentation to operational quality, with major platforms like OpenAI and Microsoft rolling out agent platforms emphasizing governance, security, and cost management. This trend is coming into sharp focus as a key deadline approaches: Article 50 of the EU AI Act, which will enforce transparency obligations for AI-generated content and agent interactions, is set to take effect on August 2, 2026.
Why it matters
This impending EU regulation is a major forcing function for the development of accountable AI systems. The requirement for AI agents to disclose their nature and for AI-generated content to be labeled as such establishes a legal benchmark for transparency. For onchain organizations exploring AI delegates or automated governance, this sets a clear precedent. Any actions taken by an AI may soon be legally required to be attributed as such, directly impacting the design of onchain voting, proposals, and treasury operations where AIs are involved. This is a crucial step in defining the legal responsibilities of autonomous systems.
Compliance and legal teams at major tech companies are working to ensure their platforms meet the Article 50 requirements, which include clear labeling of deepfakes and disclosure when a user is interacting with an AI system. Some industry groups have argued the rules are too broad and could stifle innovation, but regulators are holding firm. The operational quality features being released by AI platform providers—like shared context, authorization, and cost controls—are seen as essential tools for enterprises to manage these new compliance burdens.
The legal challenges to Illinois' first-in-the-nation 0.2% cryptocurrency transaction tax that we noted last month have escalated. The Digital Chamber filed a formal lawsuit on Sunday challenging the constitutionality of the Digital Asset Tax Act. The lobbying group argues the levy, set to take effect in January 2027, is discriminatory and preempted by federal law.
Why it matters
This lawsuit is the first major legal challenge to the wave of state-level crypto-specific taxes and will be a critical test case. The outcome could establish a significant precedent for how digital assets can be taxed by states, directly impacting the operational costs and legal compliance for any onchain organization or service provider doing business in the U.S. A victory for the Digital Chamber could halt similar tax initiatives in other states, while a loss could embolden them.
The Digital Chamber argues that the Illinois tax violates the Internet Tax Freedom Act and the Commerce Clause of the U.S. Constitution by unfairly targeting a specific industry. The state of Illinois is expected to argue that it has the right to tax business activity within its borders. This legal battle follows the recent advancement of the tax bill through the state's budget process, which now awaits the governor's signature.
In a statement titled "Headstands and Summervaults" released on Wednesday, SEC Commissioner Hester Peirce issued a nuanced warning that on-chain activities, including actively managed vaults and curated lending strategies, are not automatically exempt from U.S. securities laws. She emphasized that if a structure involves discretionary decisions by managers on whom users rely for profit, it could be deemed an investment contract, regardless of its decentralized technical implementation.
Why it matters
This is a critical piece of guidance from the SEC's most crypto-friendly commissioner, signaling that the 'economic reality' of a financial product will always trump its 'on-chain' label in the eyes of regulators. For onchain organizations, this reinforces the absolute necessity of carefully designing governance and operational structures to minimize discretionary control if they wish to avoid securities classification. Peirce's statement effectively provides a roadmap of the factors the SEC will consider, focusing on managerial discretion and user reliance. It's a clear signal that decentralization must be substantive, not just theatrical.
DeFi developers are interpreting Peirce's statement as both a warning and constructive guidance. While it dashes the hopes of some that 'code is law' provides a complete regulatory shield, it also outlines a clearer path for compliance. Legal experts highlight the focus on 'active management' as the key determinant, suggesting that truly autonomous, rule-based protocols may have a stronger case for avoiding securities classification than those with 'curators' or other active managers.
The CFTC is escalating its campaign to assert federal supremacy over state-level prediction market rulings. Following its recent emergency order defying a Michigan state court over Kalshi, the agency filed a lawsuit Sunday against New Mexico, seeking to block the state from applying its gaming laws to federally registered event contracts. The suit asserts that these contracts are 'swaps' under federal commodity law, giving the CFTC exclusive jurisdiction.
Why it matters
This lawsuit is a direct confrontation over regulatory authority that could set a major precedent for how on-chain prediction markets and other novel derivatives are treated in the U.S. If the CFTC's claim of exclusive federal jurisdiction is upheld, it would create a single, unified regulatory framework, potentially shielding platforms from a patchwork of state-level gaming and gambling laws. This is a critical battle for defining the legal personhood of entities offering these contracts and will determine whether they are regulated as financial exchanges or state-regulated gaming operators.
The CFTC argues that a fifty-state regulatory patchwork would be unworkable for national derivatives markets. New Mexico contends that Kalshi is operating as an unlicensed sportsbook, circumventing state gaming regulations. Legal experts are watching the case closely, as its outcome will have wide-ranging implications for any platform offering event-based contracts, including on-chain futarchy and governance mechanisms that rely on prediction markets.
The CFTC's Division of Market Oversight issued an advisory on Saturday that warns prediction markets against using broad, generic self-certification filings for new event contracts. The guidance emphasizes that each new contract must be individually verified for compliance with regulations, and that blanket certifications covering a series of unrelated events are insufficient.
Why it matters
This advisory signals a significant tightening of the regulatory leash on the burgeoning prediction market space, which includes on-chain platforms. By invalidating the 'certify once, list many' approach, the CFTC is increasing the compliance burden and legal risk for market operators. This action, combined with the CFTC's ongoing lawsuits over jurisdictional authority, indicates the agency is moving towards a much more hands-on regulatory posture. For DAOs using futarchy or other prediction-based mechanisms, this suggests that the regulatory environment is becoming more complex, not less.
Market operators like Kalshi and Polymarket will need to revise their contract listing procedures to comply with the new guidance, likely slowing the pace of new market introductions. The advisory is seen by some as a direct response to the rapid growth of these platforms and concerns about contracts that may violate public policy or resemble illegal gambling.
Wallet provider Phantom and the Hyperliquid Policy Center have submitted a joint letter to the CFTC, urging the agency to formalize its stance that publishing on-chain protocol software does not require registration as a financial intermediary. The letter, sent Sunday, asks the CFTC to codify the principles of its previous no-action letter to Phantom and provide a clear pathway for registered exchanges to utilize on-chain infrastructure.
Why it matters
This initiative directly targets one of the most significant legal ambiguities facing onchain organizations: developer liability. A formal rule from the CFTC clarifying that writing and publishing code is not a regulated activity in itself would provide a crucial safe harbor for open-source developers and reduce the legal risk for those building the infrastructure of decentralized finance. This is a foundational issue for the entire space, as the threat of being classified as an unregistered intermediary has a chilling effect on innovation.
The letter argues that regulatory clarity would encourage more development to occur within the U.S. regulatory perimeter, rather than forcing projects offshore. Legal experts see this as a proactive attempt by industry players to shape the regulatory landscape, moving beyond a defensive posture to propose concrete rules. The CFTC's response to this petition will be a key indicator of its future approach to decentralized technologies.
Expanding on his recent proposals to integrate AI and ZK-proofs into DAO governance, Ethereum co-founder Vitalik Buterin is now calling for a fundamental shift in how these tools are deployed. In a new post on Sunday, he argued the community should pivot from building 'hard binding' governance mechanisms toward creating 'consensus-finding tools.' Citing the chaotic global political landscape, he emphasized the need for 'sanctuary tools' to protect vulnerable groups, highlighting ZK-proofs and AI as key enabling technologies.
Why it matters
This represents a potential philosophical shift from one of the industry's most influential thinkers, moving away from the ideal of fully automated, on-chain governance toward a more nuanced, human-centric model. For organizations designing governance systems, Buterin's call to prioritize consensus and sanctuary over binding enforcement is a significant intervention. It suggests that in an unstable world, the most valuable function of onchain tools may be to facilitate agreement and protect minorities, rather than to rigidly enforce the will of the majority.
Buterin noted a decline in enthusiasm for tools like quadratic voting, suggesting that their complexity may be a poor fit for the current moment. His focus on 'sanctuary tools' is seen as a response to the increasing politicization of technology and the risks faced by dissidents and marginalized communities globally. The proposal to use AI for summarizing complex discussions and ZK-proofs for private signaling points toward a new generation of governance tools focused on nuance and safety.
The fallout from the Kelp DAO exploit continues to escalate, with Aave now facing approximately $200 million in bad debt. The incident, which involved the compromised rsETH token, has prompted a massive, coordinated 'DeFi United' recovery effort, with Aave DAO and Mantle contributing to a $160 million recapitalization fund so far. In response, Aave, led by head of New-York based Aave Labs entity, Linda Jeng, announced on Sunday a complete overhaul of its asset listing standards to include comprehensive cybersecurity and architectural reviews, moving beyond purely financial risk assessments.
Why it matters
This crisis marks a pivotal moment for DeFi's largest lending protocol and the broader ecosystem. It demonstrates both the fragility of interconnected protocols and the powerful, self-organizing capacity of DAOs to manage a financial crisis without traditional bailouts. The shift in Aave's risk framework from financial metrics to deep technical and security diligence is a direct lesson from the exploit and is likely to set a new industry standard for listing new assets. This is a real-world stress test of DAO treasury management and risk mitigation, with direct implications for how onchain organizations must evolve to handle systemic risk.
Within the Aave community, there's strong support for the protocol overhaul, with many seeing it as a necessary evolution to ensure long-term viability. Some critics, however, argue the new, more stringent listing process could stifle innovation and favor larger, more established assets. The 'DeFi United' response is being lauded as a sign of the ecosystem's resilience, though it also raises questions about the concentration of power and resources among a few large players who are leading the recovery.
The NEAR governance body has voted to eliminate its 30% developer gas rebate program, a core part of its original economic design. The change, announced Saturday, will redirect all execution and storage fees to a protocol-level burn mechanism. The new tokenomics are expected to be implemented with the nearcore v2.14 upgrade in August 2026.
Why it matters
This is a major strategic shift for the NEAR ecosystem, moving from a model that directly subsidized developer activity to one that prioritizes a deflationary token model for all holders. The decision reflects a broader debate in the L1 space about the most effective way to incentivize long-term growth. While the fee burn may increase the economic value of the NEAR token, the removal of a direct financial incentive for developers could impact the ecosystem's ability to attract and retain builders, presenting a real-time case study in DAO economic policy trade-offs.
Supporters of the move argue that the rebate program was complex and that a simpler, deflationary token model is more attractive to the market. Detractors, including some developers within the ecosystem, worry that this removes a key differentiator for NEAR and could harm its competitiveness against other platforms that offer developer incentives. The vote highlights the tension between token holder interests and builder interests within DAO governance.
Building on Ripple and Mastercard's joint membership in the x402 Foundation we tracked last week, the XRP Ledger has integrated Mastercard's Verifiable Intent standard via t54.ai. This upgrade enables cryptographic authorization and automated risk screening, allowing AI agents to execute purchases with verified intent, spending limits, and transaction details. The integration adds a crucial layer of auditable control to the XRPL, contextualizing the surge of over 1.4 million agentic transactions the network recently reported.
Why it matters
This integration of an enterprise-grade standard from Mastercard into a public blockchain's AI payment rail is a pivotal development for the machine economy. It directly addresses the core challenges of liability, compliance, and auditable control that have hindered institutional trust in autonomous systems. For onchain organizations, this provides a blueprint for how AI delegates or automated treasury managers could operate with verifiable, enforceable policies, moving beyond simple payment execution to governed financial action. The rapid transaction growth, though small in value, demonstrates strong developer uptake of this low-friction infrastructure.
The collaboration between Ripple and Mastercard on the x402 protocol signals a broader institutional push for robust agentic payment infrastructure. The standard, which enables verifiable authorization for machine-to-machine transactions, is seen as essential for building trust in the agentic economy. While transaction volume is growing, the focus remains on building the foundational layers of security and verification before significant financial value is at stake.
The Blockchain Game Alliance, Deloitte, and the Dubai Multi Commodities Centre (DMCC) free zone have jointly announced the formation of the AI & Agentics Council. The new body aims to create legal and operational frameworks to address the challenges of 'governed autonomy' for AI agents that can hold their own wallets and execute transactions, focusing on human accountability, liability, and creating model-independent infrastructure.
Why it matters
The formation of this council is a significant, proactive step to build the legal and governance scaffolding required for an economy where AI agents are active participants. It directly confronts the core questions of legal personhood, liability, and asset control that are paramount for the Onchain Organization Alliance. By bringing together a global professional services firm (Deloitte) and a major economic free zone (DMCC), the initiative moves the discussion from theory to practice, aiming to create standards that can attract institutional capital by providing a clear framework for accountability.
Founding members emphasize that without clear rules of the road for agent liability and capital controls, institutional investment in economies populated by autonomous agents will remain stalled. The council's initial focus will be on the high-growth area of blockchain gaming, which serves as a natural sandbox for these concepts before they are applied to broader financial markets. Skeptics suggest that creating a 'model-independent' infrastructure is a lofty goal, given the proprietary nature of today's frontier AI models.
The theoretical 'accountability gap' for autonomous AI that we have been tracking has materialized in a concrete financial loss. A new report from security firm Undercode, released Saturday, details an incident where an AI agent autonomously approved a $50,000 payment to an unknown vendor. Traditional audit trails failed to attribute the decision-making authority for the action, highlighting the risks of deploying financial AI agents without robust, purpose-built governance frameworks.
Why it matters
This incident provides a concrete example of the abstract risks associated with autonomous financial agents. It moves the discussion beyond theoretical liability to a practical failure of governance. The analysis underscores the urgent need for new accountability architectures that include human-in-the-loop controls, tamper-evident audit trails, and explicit identity and authority management for AIs. This directly parallels the foundational challenges of DAO governance: how to establish clear accountability and liability in systems designed for autonomy.
The Undercode report advocates for an 'accountability-first' design principle for any AI system that touches financial operations. Security analysts point out that this is not a failure of the AI's performance but a failure of the organization's governance design. Enterprise software vendors are now racing to build and market AI governance platforms that provide the kinds of controls and audit trails that were missing in this case.
A new technical analysis published on Saturday outlines a three-layer architecture for building robust, multi-chain AI agents: a Perception layer for data intake, a Decision layer for planning, and an Execution layer for on-chain transactions. The author highlights the significant engineering challenges in this model, including maintaining state consistency across different chains, enforcing budgets, ensuring reproducibility of actions, and the current lack of infrastructure for agent-to-agent coordination.
Why it matters
This analysis moves beyond the hype of AI agents to detail the concrete engineering hurdles that must be overcome to create reliable autonomous onchain actors. For any organization planning to build or utilize such agents, understanding these challenges—especially state consistency and budget enforcement—is critical for risk management. The paper underscores that building a single, effective agent is hard, but building a system where multiple agents can coordinate reliably is an even greater challenge, mirroring the complexities of multi-DAO collaborations. This provides a sober, practical look at the infrastructure needed for the next generation of onchain organizations.
The author, posting under the name BBIO on dev.to, argues that current AI agents are often just 'glorified scripts' and that true autonomy requires a more complex, layered architecture. The piece has been praised by blockchain developers for its realistic assessment of the technical debt in the 'AI on chain' space and for clearly articulating problems like the 'reproducibility crisis,' where it's difficult to verify why an agent made a specific decision.
A Saturday analysis in Hackernoon highlights a significant, coordinated industry push into the agentic economy, with MetaMask, Coinbase, OKX, and BNB Chain all releasing wallets and payment rails specifically for AI agents within a four-week span in June and July 2026. This rapid succession of launches indicates a broad consensus that autonomous AI requires native crypto infrastructure to operate effectively.
Why it matters
The nearly simultaneous rollout of agent-specific wallets by competing industry giants is a powerful market signal. It confirms that the problem of enabling autonomous, non-human entities to transact is being taken seriously and that on-chain payments are seen as the solution. For onchain organizations, this means the base layer infrastructure for AI agents to hold assets, pay for services, and potentially participate in governance is materializing much faster than anticipated. The structural inability of traditional finance to serve non-KYC'd AI entities creates a clear, defensible market for crypto rails.
The analysis notes that these products address a fundamental gap, as traditional financial rails are not designed for the high-frequency, low-value micro-transactions characteristic of machine-to-machine payments. Furthermore, AI agents lack the legal identity required to pass KYC for traditional bank accounts. Crypto wallets provide a native solution for both issues, granting agents a degree of economic sovereignty.
The CLARITY Act is continuing to fracture its previous law enforcement opposition. Following recent endorsements from the FLEOA and the Major County Sheriffs' shift to a neutral stance, the Fraternal Order of Police (FOP) officially endorsed the revised bill on Friday. The backing from the 382,000-member organization comes after negotiators added new provisions strengthening law enforcement's ability to conduct criminal investigations and seize digital assets.
Why it matters
This endorsement is a significant political win for the CLARITY Act, removing a major point of opposition and increasing the likelihood of bipartisan support. By addressing law enforcement's concerns about illicit finance, the bill's sponsors have made it more palatable to security-focused lawmakers. For onchain organizations, this development means that any future regulatory clarity will come tightly coupled with enhanced surveillance and enforcement tools, shaping the compliance landscape for all U.S.-based crypto operations.
While the FOP's support is a positive development for the bill's passage, the announcement noted that a group of seven Democratic senators continue to withhold their support, citing ongoing concerns about consumer protection and ethics provisions. This indicates that while the law enforcement hurdle may be cleared, the bill still faces significant political negotiation before it can pass.
The European Union's 21st sanctions package, adopted on Thursday, introduces a powerful new legal mechanism allowing the bloc to prohibit EU operators from transacting with crypto service providers in an entire third country. This measure can be triggered if a country is found to be sheltering services used for sanctions evasion. While no countries have been designated yet, the package also blacklisted 14 more crypto platforms, including HTX, for allegedly facilitating Russian transactions.
Why it matters
This represents a dramatic escalation in the EU's approach to sanctions enforcement in the crypto space, moving from targeting individual entities to potentially blacklisting entire national ecosystems. This significantly raises the compliance burden and jurisdictional risk for any onchain organization or exchange with a global footprint. It compels non-EU countries to police their domestic crypto sectors to avoid being cut off from European markets and liquidity, effectively exporting EU regulatory standards globally.
Compliance officers at major exchanges are reportedly scrambling to update their country-level counterparty risk assessments in light of the new rule. Legal analysts note that this is a departure from the traditional, entity-based sanctions list and creates a new, more powerful tool for geopolitical leverage. Crypto advocacy groups in Europe have expressed concern that the measure is overly broad and could inadvertently harm legitimate users in targeted countries.
The UK's Financial Conduct Authority (FCA) has finalized its comprehensive rulebook for cryptoassets, with a full implementation date set for October 2027. Announcing the framework on Sunday, the regulator noted that the final version includes some concessions on transparency and safeguarding measures compared to earlier drafts, aiming for a pragmatic integration of crypto firms into the UK's mainstream financial regulation under the Financial Services and Markets Act.
Why it matters
This marks the conclusion of a multi-year process to create regulatory certainty for the crypto industry in the UK, one of the world's major financial centers. The long implementation timeline provides firms with ample time to adapt, while the softened final rules suggest a regulatory approach that seeks to balance consumer protection with fostering innovation. For onchain organizations, this provides a clearer roadmap for operating in the UK, with specific rules for trading, stablecoins, staking, and DeFi that will shape legal structures and compliance strategies.
The finalized framework has been cautiously welcomed by the UK crypto industry, which is relieved to have a clear path forward after years of uncertainty. The two-year implementation window is seen as a reasonable timeframe to build out compliance functions. Some consumer protection groups have expressed concern that the softened rules may not be sufficient to protect retail investors from the risks of the crypto market.
A Saturday analysis from crypto.news examines the five primary economic models funding the growing trend of 'gasless' crypto transfers. These include diluting token holders via inflation, direct funding from foundation treasuries, cross-subsidization from paid service tiers, third-party patron sponsorship (like ad-supported models), and application-level paymasters who bundle the cost into their service fees. The article compares these to the 'free to the user' model of credit card payments.
Why it matters
As onchain finance matures, understanding the true cost of 'free' services is crucial for treasury management and sustainable protocol design. This analysis provides a clear taxonomy for evaluating the sustainability of gasless transaction providers. For an organization operating onchain, knowing whether a service is funded by an unsustainable foundation grant versus a robust, application-level business model is a critical factor in risk assessment and infrastructure choices. There is no free lunch, and this framework helps identify who is paying for it.
The article notes that models relying on foundation treasuries or token inflation are often temporary and designed to bootstrap a network, but can fail if user growth doesn't lead to a sustainable model. Application-level paymasters, where the cost is bundled into a service, are identified as one of the more sustainable long-term solutions, as they directly tie the cost of the transaction to a value-generating activity.
Accountability Infrastructure for AI Agents Becomes a Priority Multiple efforts are underway to build governance and legal rails for autonomous AI agents. The AI & Agentics Council (Deloitte, DMCC) is creating frameworks for AI with wallets, a Delhi High Court ruling defines AI training rights, and enterprise platforms are shipping with built-in controls. This mirrors the challenges of establishing legal personhood and liability for onchain organizations.
Major DeFi Exploits Force Protocol-Level Risk Management Overhauls The cascading fallout from the Kelp DAO hack, now a $200M bad debt problem for Aave, is forcing a shift in DeFi risk management. Aave is overhauling its asset listing criteria to include deep architectural and security reviews, moving beyond simple financial risk models. This signals a maturation of protocol governance, where preventing systemic contagion becomes a core responsibility.
The Jurisdictional Tug-of-War Over Crypto Heats Up The CFTC is suing New Mexico to assert federal supremacy over prediction markets, fighting state-level gaming laws. Simultaneously, the EU has granted itself the power to sanction entire countries' crypto sectors, and a crypto lobbying group is suing Illinois over its new digital asset tax. This highlights the intense, multi-front battle to define regulatory perimeters.
Real-World Assets Mature from Issuance to Utilization The conversation around tokenized real-world assets (RWAs) is shifting from mere issuance to practical use. RWA volume has become the largest market on the Hyperliquid DEX, and tokenized stock trading is surging on Robinhood Chain. However, challenges in reliable pricing for DeFi collateral and low overall utilization rates show the infrastructure is still in its early stages.
DAOs Refine Governance Mechanics Through Real-World Stress Tests Major DAOs are actively refining their governance frameworks. Arbitrum's Security Council is correcting a voting power discrepancy, NEAR is ending its developer gas rebate program in a tokenomics shift, and Convex Finance is moving its entire governance process on-chain. These are not theoretical debates but practical adjustments to improve operational integrity and economic alignment.
What to Expect
2026-07-27—Convex Finance plans to transition its governance fully on-chain.
2026-07-30—Convex Finance's full on-chain governance, including DAO proposals and gauge votes, is set to be effective.
2026-08-02—EU AI Act Article 50, enforcing transparency obligations for AI-generated content, is scheduled to take effect.
August 2026—NEAR Protocol anticipates implementing nearcore v2.14 upgrade, which will eliminate the developer gas rebate program.
October 2027—UK's comprehensive cryptoasset rulebook, finalized by the FCA, is set for implementation.
How We Built This Briefing
Every story, researched.
Every story verified across multiple sources before publication.
🔍
Scanned
Across multiple search engines and news databases
481
📖
Read in full
Every article opened, read, and evaluated
166
⭐
Published today
Ranked by importance and verified across sources
19
— The Wrapper
🎙 Listen as a podcast
Subscribe in your favorite podcast app to get each new briefing delivered automatically as audio.
Apple Podcasts
Library tab → ••• menu → Follow a Show by URL → paste