x-agent-trust extension is officially registered in the OpenAPI Extensions RegistrySecure agent access for banking and payments. Verified identity. Signed responses. Sanctions screening. SOC 2 mapped. Integrated into moov-io/watchman.
MCPS -- Secure MCP built for regulated finance. Learn more →
Built on open standards. 10 IETF Internet-Drafts including ATTP (Agent Trust Transport Protocol) and MCPS. OWASP MCP Top 10 contributor. OpenAPI Extensions Registry entry. Submitted to EBA, FCA, and PCI SSC.
Every transaction signed with ECDSA P-256. Non-repudiable receipts proving which agent authorised what.
5-dimension behavioural trust score (0-100). Agents earn spending authority through proven behaviour.
Per-transaction and daily limits enforced by trust level. Agents cannot exceed their authority.
Unique nonce per transaction. Captured payment requests cannot be re-sent.
Hash-chained tamper-evident log. JSON + RFC 5424 syslog. SIEM-ready.
Magnitude, velocity, recipient, and timing anomalies detected. Trust automatically adjusts.
75,784 sanctions entries screened on every payment. UK HMT (57K) + US OFAC SDN (18K). Sanctioned recipients blocked in real time.
Native iOS SDK with Keychain-secured ECDSA keys. Python and Node.js SDKs for server-side. Agents pay from any platform.
DNS for agents. Register, resolve, and search agent identities. Anti-squatting protection. AgentSign-certified.
Cloud or on-premise. Your compliance, your infrastructure.
Managed by us. Sign up, get an API key, start verifying agents in minutes. Zero infrastructure.
Deploy in your own infrastructure. Docker image with everything included. Your data never leaves your network.
Built-in certificate authority for AI agents. Issue, revoke, and verify agent identity certificates with OCSP and CRL -- no external CA required.
Issue short-lived identity certs with trust level, scopes, and issuer embedded. ECDSA P-256 signed.
Real-time certificate status checks. Instant revocation propagation. Verifiers query status before trusting any agent.
CA keys stored in AWS KMS, GCP Cloud KMS, Azure Key Vault, or HashiCorp Vault. Your keys never touch disk.
Docker container with license key. Deploy in minutes. Your infrastructure, your control.
| Level | Score | Per Transaction | Daily Limit | Use Case |
|---|---|---|---|---|
| L0 | 0-19 | $0 | $0 | No financial access |
| L1 | 20-39 | $10 | $50 | Micro-payments |
| L2 | 40-59 | $100 | $500 | Standard transactions |
| L3 | 60-79 | $1,000 | $5,000 | Enterprise purchasing |
| L4 | 80-100 | $50,000 | $200,000 | Full access (audited) |