AITF develops and maintains the open cryptographic identity standard for AI agents, GPUs, and AI models — post-quantum ready, EU AI Act compliant, MIT licensed.
AI agents are taking autonomous actions at scale — moving capital, making decisions, executing code — with no cryptographic proof of identity, authority, or accountability. AITF exists to fix this, permanently, as an open standard.
Every AI agent and GPU deserves a post-quantum signed certificate. Not a username. Not an API key. A verifiable, unforgeable identity bound to the agent itself.
Every action taken by an agent must be signed, timestamped, and logged immutably. EU AI Act Article 12 is enacted law today across 27 member states.
Agent identity cannot be owned by a single company. AITF develops and maintains an open standard — free to implement, free to audit, governed by the community.
The standard uses CRYSTALS-Dilithium3 (ML-DSA, FIPS 204) — NIST-selected post-quantum algorithms. Identities issued today remain valid in the quantum era.
Maps directly to EU AI Act Article 12, NIST AI RMF, SOC2, and ISO 27001. Compliance is built into the protocol layer — not an afterthought.
AITF is governed by its members — security companies, AI infrastructure providers, universities, and enterprises. No single entity controls the standard.
The AITF standard defines five core primitives that together provide complete identity and trust infrastructure for AI agents, GPUs, and AI models.
| Primitive | Description | Status |
|---|---|---|
| Agent Passport | Post-quantum signed X.509 certificate bound to each AI agent | Live |
| Device Attestation | Hardware-bound certificate for GPU and compute devices (TPM 2.0) | Live |
| Threshold CA | Distributed certificate authority with MPC — no single private key | Q3 2026 |
| Audit Protocol | Immutable signed action log — EU AI Act Article 12 compliant | Live |
| Policy Layer | OPA-compatible capability scope enforcement at runtime | Q3 2026 |
ComputeID is the production reference implementation of the AITF standard — live at compute-id.com with post-quantum cryptography, a public passport issuance portal, and full EU AI Act Article 12 compliance.
AITF is built by its community. Whether you write code, review cryptographic specifications, participate in working groups, or contribute regulatory expertise — there is a place for you.
Agent Passport Protocol, Threshold CA design, Audit Protocol specification. Requires cryptography background.
View on GitHub →Python SDK, CLI, MCP tools, and integrations with LangChain, CrewAI, and other agent frameworks.
Contribute →Review and contribute to the RFC draft for Agent Identity and Capability Attestation. Target: Q1 2027.
Join Working Group →Map the standard to EU AI Act, NIST, SEBI, RBI, and other jurisdictional frameworks. Policy experts welcome.
Get Involved →Partner with AITF on post-quantum cryptography, MPC, and formal verification. Industrial PhD programme open.
Contact Research →Write guides, tutorials, and integration examples to help enterprises and developers adopt the standard.
Start Contributing →AITF follows a phased governance model — from foundation-led open source to a fully community-governed, decentralised standard body.
Open source release. Reference implementation live. First enterprise adopters. EU AI Act compliance framework.
Threshold CA with MPC. OPA policy enforcement. CrewAI + LangChain integration. First 10 enterprise customers.
Draft RFC for Agent Identity and Capability Attestation. KU Leuven COSIC partnership. IEEE working group formation.
Community-governed CA. Distributed node operators. Every major agent framework uses AITF by default.
AITF is a curated foundation — not an open public signup. Every application is reviewed personally. We welcome enterprises, researchers, developers, and regulators.
Founding Sponsors are the organisations that make the AITF standard possible. Your contribution funds the research, standards work, and open source infrastructure that will govern AI identity globally.
We will respond within 2 business days with the full sponsorship pack.
Every application is reviewed personally. We respond within 5 business days. Questions adapt based on your membership type.
Get the AITF newsletter — standard updates, RFC progress, regulatory developments, and invitations to global events.
Whether you are an enterprise deploying AI agents, a security researcher, a framework developer, or a regulator — AITF needs your participation.