I-D Action: draft-fane-opena2a-aap-01.txt
| Newsgroups | gmane.ietf.announce |
|---|---|
| Message-ID | <178476968375.528358.12942943236717641185@dt-datatracker-d4d6ff9d9-fsx7d> |
Internet-Draft draft-fane-opena2a-aap-01.txt is now available. Title: OpenA2A Agent Authorization Protocol (AAP) Author: Abdel Fane Name: draft-fane-opena2a-aap-01.txt Pages: 14 Dates: 2026-07-22 Abstract: This document defines the OpenA2A Agent Authorization Protocol (AAP), a protocol for authorization in AI agent systems. AAP provides mechanisms for agent identity assertion, scoped capability grants, cross-agent delegation, behavioral attestation, cross-organizational federation, and revocation propagation. AAP is the authorization complement to agent communication protocols such as A2A and the Model Context Protocol, in the same way that OAuth 2.0 complements HTTP for web applications. AAP has two layers. The token model, defined in this document, specifies the AAP credentials and assertions: what they contain, how they are signed, and how they are verified. A companion broker and resolution layer specifies how an agent obtains and exercises a grant without the credential value ever entering the agent's reasoning context. This confinement property, that no secret, temporary credential, or backend identifier reaches the agent or the model behind it, is the primary design goal of the protocol. The IETF datatracker status page for this Internet-Draft is: https://datatracker.ietf.org/doc/draft-fane-opena2a-aap/ There is also an HTML version available at: https://www.ietf.org/archive/id/draft-fane-opena2a-aap-01.html A diff from the previous version is available at: https://author-tools.ietf.org/iddiff?url2=draft-fane-opena2a-aap-01 Internet-Drafts are also available by rsync at: rsync.ietf.org::internet-drafts _______________________________________________ I-D-Announce mailing list -- [email protected] To unsubscribe send an email to [email protected]