V12.7 · Agent Trust Gateway & Verified Execution

Authorize an agent action without surrendering control

The gateway turns an eligible Intent Firewall decision into a short-lived execution permit that is bound to one verified agent, one audience and one exact payload.

Local deterministic intelligence · no external AI

Four guarded steps

From policy decision to verified authorization

Each step closes a different trust gap. A permit cannot silently change target, payload, identity or expiry after it is signed.

1

Evaluate the intent

The local V12.6 engine checks identity, delegation, policy, destination, sensitivity and impact.

2

Issue a permit

An eligible result becomes a signed, short-lived authorization with explicit restrictions.

3

Present exact evidence

The caller presents the one-time nonce, payload SHA-256, audience and idempotency key.

4

Verify before acting

The gateway checks signature, binding, expiry, revocation, replay and use limits before returning allow or deny.

Permit anatomy

What a verified permit binds

These fields make the authorization narrow, inspectable and unsuitable for reuse in another context.

Verified agent identity
The permit belongs to one active, account-owned cryptographic identity.
Payload SHA-256
Changing even one byte produces a different hash and fails authorization.
Audience
The permit is valid for one normalized hostname or IP address.
Secret nonce
A random value shown once prevents a copied permit from being replayed.
Policy snapshot
The exact policy version and hash used for the decision remain recorded.
Short expiry
Permits expire within fifteen minutes and have a strict use limit.

Safety boundaries

What the gateway deliberately refuses to do

Authorization is separated from execution so a website control plane never becomes an unrestricted remote-action system.

It never runs the requested agent action.

It rejects consumed, revoked and replayed permits.

It rejects payload or audience changes.

It rejects expired and overused permits.

It requires a verified identity and eligible intent decision.

It records privacy-safe, tamper-evident authorization evidence.

V12.8 · Nexus Trust Exchange

See how verified observations become network trust

V12.8 adds the first bounded Nexus Trust Exchange above the execution gateway.

Explore Nexus Trust