AgentPass -- The credit check for AI agents. IETF Draft

Autonomous Agent Payments.
Trusted.

The credit check for AI agents. Trust scoring, signed payments, spend limits, and compliance for autonomous agents that spend money.

🛡 OFAC + HMT Sanctions (75K entries)
📱 Mobile SDKs (iOS, Python, Node)
🔒 ECDSA P-256 Signed Payments
L0-L4 Behavioural Trust Scoring
🔍 Challenge-Response Identity
📋 Hash-Chained Audit Trail
Live Demo -- AgentPass iOS SDK

Standards & Compliance

Built on open standards. 6 IETF Internet-Drafts including ATTP (Agent Trust Transport Protocol). OWASP endorsed. Submitted to EBA, FCA, and PCI SSC.

🛡
OWASP MCP Security Cheat Sheet
Contributor -- Section 7: Message Integrity & Replay Protection
📜
IETF Internet-Draft
draft-sharif-agent-payment-trust-00
📜
IETF Internet-Draft
draft-sharif-mcps-secure-mcp
🏛
UK Patents (UKIPO)
8 patents filed covering agent trust, ATTP, payment security, and cryptographic signing
FCA Regulatory Sandbox
Application submitted for autonomous agent payment oversight
💳
PCI DSS v4.0.1 Mapping
Complete compliance mapping submitted to PCI SSC
🏦
EBA Position Paper
PSD2 position paper on AI agent payments submitted
SDKs
🐍 Python (PyPI)📦 Node.js (npm)🍎 Swift (iOS)
🔒

Signed Payments

Every transaction signed with ECDSA P-256. Non-repudiable receipts proving which agent authorised what.

📊

Trust Scoring

5-dimension behavioural trust score (0-100). Agents earn spending authority through proven behaviour.

🛡

Spend Limits

Per-transaction and daily limits enforced by trust level. Agents cannot exceed their authority.

🔄

Replay Protection

Unique nonce per transaction. Captured payment requests cannot be re-sent.

📋

Audit Trail

Hash-chained tamper-evident log. JSON + RFC 5424 syslog. SIEM-ready.

Anomaly Detection

Magnitude, velocity, recipient, and timing anomalies detected. Trust automatically adjusts.

🛡

OFAC + HMT Sanctions

75,784 sanctions entries screened on every payment. UK HMT (57K) + US OFAC SDN (18K). Sanctioned recipients blocked in real time.

📱

Mobile Payments

Native iOS SDK with Keychain-secured ECDSA keys. Python and Node.js SDKs for server-side. Agents pay from any platform.

🌐

Agent Registry

DNS for agents. Register, resolve, and search agent identities. Anti-squatting protection. AgentSign-certified.

Deploy Your Way

Cloud or on-premise. Your compliance, your infrastructure.

SaaS

Managed by us. Sign up, get an API key, start verifying agents in minutes. Zero infrastructure.

  • ✓ Free sandbox with $10K test balance
  • ✓ agentpass.co.uk API
  • ✓ Automatic sanctions updates
  • ✓ No ops required
New
🏢

Self-Hosted

Deploy in your own infrastructure. Docker image with everything included. Your data never leaves your network.

  • ✓ Single Docker container
  • ✓ Sanctions data baked in
  • ✓ License key activation
  • ✓ Full regulatory control
Contact us for access

Pricing

Sandbox
Free
Test with $10,000 fake balance
  • Unlimited agents
  • Full trust scoring
  • Signed transactions
  • Audit trail
Get Started
Enterprise
Custom
On-premise, SLA, custom scoring
  • Everything in Pro
  • On-prem deployment
  • Custom trust models
  • Dedicated support
Contact Us

Trust Levels

LevelScorePer TransactionDaily LimitUse Case
L00-19$0$0No financial access
L120-39$10$50Micro-payments
L240-59$100$500Standard transactions
L360-79$1,000$5,000Enterprise purchasing
L480-100$50,000$200,000Full access (audited)