
Hello Citizens,
Payment systems for AI agents are being built. The trust layer above them is not.
x402 has already processed 165 million transactions and roughly $50M in volume. Agents can discover each other, message, and pay.
But none of that answers: who operates an agent, what it is authorized to do, and whose rules govern it.
The moment an agent does anything that requires government approval, the system breaks.
The Gap
Today's agent identity stack stops at commerce. Agents buy API calls, pay for compute, settle invoices. That's valuable. It's also a ceiling.
What happens when agents start participating in jurisdictions? Forming companies in economic zones. Applying for permits. Onboarding users. Managing assets. Interacting with governments on behalf of verified humans.
The identity and permissions layer for that world looks very different from a payment receipt.
What We Published
We extended the Sovrn Protocol to autonomous agents operating across jurisdictions.
Apache 2.0, built on the ecosystem standards: W3C VC 2.0, UCAN, SD-JWT-VC, ERC-8004. What makes it different:
Jurisdiction-bound credentials. An agent doesn't just have an identity. It has credentials issued or co-signed by the zone authority where it operates. The difference between ‘I exist’ and ‘I'm authorized to operate here.’
Delegated authority that attenuates. A human authorizes an agent. That agent can delegate to sub-agents. Each delegation is bound by zone, time, and permission. Authority can only narrow down the chain, never widen. Revoke the root and the entire chain collapses. Fail-closed everywhere.
Reputation that travels. Not a score. A verifiable, time-bound record of actions taken across jurisdictions. Tamper-evident. Portable. Anchored to evidence, not opinion.
Two Modes
We designed the protocol around two operating modes:
Play Mode: Open, permissionless. Any developer mints an agent identity and starts building reputation. No zone authority required.
Gov Mode: A zone authority co-signs the agent's credentials. Compliance, assurance, jurisdiction-bound trust. This is proprietary and it cannot be forked. $99/yr per agent registration.
Why This Matters Now
Agent infrastructure is scaling fast. Agents will be transacting at scale within 12 months. But transacting without accountability is a temporary state. Governments will demand trust infrastructure. The question is who builds it.
Zones are already our customers. We have signed MoUs with 3 sovereign zones so far. The same infrastructure that onboards a human into a zone onboards an agent into one. Two markets, one substrate.
Nobody else is building this. Catena Labs and Skyfire build agent identity for commerce. We build identity, permissions, and trust for sovereign agents operating across jurisdictions.
What's Live
Agent identities minting, credentials issuing, revocable delegations, publicly resolvable DIDs
Reputation credentials issuing, computed from verified history
Gov Mode built, activating with the first zone co-signature
A reference MCP verifier implementation and a 40-fixture conformance suite, shipped in the repo
DIF and EF identity teams engaged on schemas
The payment systems are being built by everyone. The trust layer above them is being built by us.
Star the repo: github.com/Sovrn-place/sovrn-agent-protocol
Onward,
Aashraya

