x-agent-trust extension is officially registered in the OpenAPI Extensions RegistryIdentity, integrity, policy, detection, response — the full runtime control plane for autonomous AI agents. Validated where it counts: our MCPS analyzer is merged into cisco-ai-defense/mcp-scanner (PR #160).
MCPS -- Secure MCP built for regulated finance. Learn more →
Identity to response — five layers that govern every AI agent at runtime. Not a black box: built on open standards, with dated patents and IETF drafts behind every layer.
Verifiable agent passports. verifiable agent certificates, challenge-response identity, L0–L4 trust levels, registry resolution.
Every message and tool call signed. Per-call replay protection and tool-hash pinning. MCPS — an IETF Internet-Draft.
Authority earned, never assumed. Trust-gated scopes & spend limits, per-agent and fleet policy. Deploy SaaS or fully self-hosted.
Continuous behavioural monitoring — magnitude, velocity, recipient and timing anomalies surface drift and shadow agents; trust adjusts automatically.
Instant kill switch & quarantine, instant certificate revocation, hash-chained tamper-evident audit. Every action reversible and SIEM-ready.
Built on open standards. 10 IETF Internet-Drafts including ATTP (Agent Trust Transport Protocol) and MCPS. OWASP MCP Top 10 contributor. OpenAPI Extensions Registry entry. Submitted to EBA, FCA, and PCI SSC.
Every transaction cryptographically signed. Non-repudiable receipts proving which agent authorised what.
5-dimension behavioural trust score (0-100). Agents earn spending authority through proven behaviour.
Per-transaction and daily limits enforced by trust level. Agents cannot exceed their authority.
Unique nonce per transaction. Captured payment requests cannot be re-sent.
Hash-chained tamper-evident log. JSON + RFC 5424 syslog. SIEM-ready.
Magnitude, velocity, recipient, and timing anomalies detected. Trust automatically adjusts.
75,784 sanctions entries screened on every payment. UK HMT (57K) + US OFAC SDN (18K). Sanctioned recipients blocked in real time.
Native iOS SDK with Keychain-secured ECDSA keys. Python and Node.js SDKs for server-side. Agents pay from any platform.
DNS for agents. Register, resolve, and search agent identities. Anti-squatting protection. AgentSign-certified.
Cloud or on-premise. Your compliance, your infrastructure.
Managed by us. Sign up, get an API key, start verifying agents in minutes. Zero infrastructure.
Deploy in your own infrastructure. Docker image with everything included. Your data never leaves your network.
AgentPass is integrated with FIPS 140-2 Level 3 compliant key management.
Docker container with license key. Deploy in minutes. Your infrastructure, your control.
| Level | Score | Per Transaction | Daily Limit | Use Case |
|---|---|---|---|---|
| L0 | 0-19 | $0 | $0 | No financial access |
| L1 | 20-39 | $10 | $50 | Micro-payments |
| L2 | 40-59 | $100 | $500 | Standard transactions |
| L3 | 60-79 | $1,000 | $5,000 | Enterprise purchasing |
| L4 | 80-100 | $50,000 | $200,000 | Full access (audited) |