Know who is acting
Link each AI system and agent to an organization, accountable owner, version, and revocable identity.
Every AI should be identifiable. Every agent should be accountable. Every action should be authorized. Every AI system should be continuously verifiable.
The tenant-scoped Trust API and encrypted evidence vault are live for a controlled pilot. The September 13, 2026 production acceptance snapshot recorded ColomboAI's own Trust tenant as NOT_ASSESSED. Independent certification and Agent Guard enforcement are not enabled.Deployed agents gain memory, tools, credentials, data access, providers, and delegated authority. Each connection can change after a point-in-time evaluation.
MC-1 Trust is being designed as an implementation of the ColomboAI-led, implementation-neutral AATS working draft, linking identity, runtime policy, evidence, assessment, and revocation.
Link each AI system and agent to an organization, accountable owner, version, and revocable identity.
Scope tools, data, resources, delegated authority, and expiry before actions are attempted.
Agent Guard and Guard Edge are intended to apply policy at tool and runtime boundaries.
Collect source, timestamp, control, owner, and integrity proof for each assessment input.
Model, provider, prompt, tool, permission, and memory changes should trigger fresh review.
The Trust API and exact-ID registry expose scoped status without disclosing private evidence.
Production supports tenant-scoped agent registration, AES-GCM encrypted evidence, assessment records, advisory decisions, state events, and exact certificate lookup. Authentication, cross-tenant denial, ciphertext storage, decryption, and audit-chain integrity have been tested. No independent certificate has been issued. Automated connectors, broad inventory discovery, data maps, permission graphs, and execution-boundary Guard integration remain in development.
Map systems, owners, data paths, authority, and changes.
Use the public SDK source, CLI, Action, and reference verification flows.
Review scoped evidence under an authorized, logged assessment process once evaluator governance is established.
The specification, clients, CI readiness check, and reference verification flows are public. Readiness results cover a declared subset of AATS and never confer certification.
Public working draft, controls, schemas, examples, governance, and assurance protocol.
View repository ↗Python and TypeScript fail-closed clients with the mc1 trust command suite.
View repository ↗Static CI checks across 11 of 25 AATS domains, with explicit subset semantics.
View repository ↗Continuous assurance and pinned-key registry/Passport verification examples.
View repository ↗AATS defines proposed control requirements for AI applications and agents. Independent implementations and public review are central to its design.
Proposed launch pricing, subject to infrastructure and commercial review. Preview access is arranged directly; paid checkout is not yet available. Inference and paid third-party evaluations remain separately attributable.
$0/year
$490/year
$1,990/year
$9,990/year
Enterprise proposals from $50,000/year, scoped to deployment, retention, capacity, and support.
Usage definitions and release gates →